Search Results (22 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2011-3832 1 Sitracker 1 Support Incident Tracker 2024-08-06 N/A
Eval injection vulnerability in config.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated administrators to execute arbitrary PHP code via the application_name parameter in a save action.
CVE-2012-2235 1 Sitracker 1 Support Incident Tracker 2024-08-06 N/A
Cross-site scripting (XSS) vulnerability in Support Incident Tracker (SiT!) 3.65 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter to index.php, which is not properly handled in an error message.