Ultimate.HelpDesk.Index.ASP.XSS

description-logoDescription

A Cross-site scripting (XSS) vulnerability in index.asp in Ultimate HelpDesk, allows remote attackers to inject an arbitrary web script or HTML via the keyword parameter.

affected-products-logoAffected Products

Ultimate HelpDesk Basic
Ultimate HelpDesk Billing
Ultimate HelpDesk Suite

Impact logoImpact

Inject arbitrary web script or HTML.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor-supplied patches for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-11 16.978