Vulnerabilities
Vulnerable Software
Multiple SQL injection vulnerabilities in Crafty Syntax Live Help (CSLH) 2.14.6 and earlier allow remote attackers to execute arbitrary SQL commands via the department parameter to (1) is_xmlhttp.php and (2) is_flush.php.
CVSS Score
7.5
EPSS Score
0.017
Published
2008-08-27
Crafty Syntax Live Help (CSLH) 2.14.6 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.
CVSS Score
5.0
EPSS Score
0.004
Published
2008-08-27


Contact Us

Shodan ® - All rights reserved