CVE Tools

Headstart-solutions

7 CVEs tracked since 2007. Since Feb 2007, none of them reached CISA KEV.

Headstart-solutions CVEs per month

Feb 2007 to Aug 2007. Point at a month, or focus the strip and use the arrow keys.
Headstart-solutions CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2007-0250
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-0820

Products

The products that kept showing up in Headstart-solutions's monthly top three, with their CVEs summed over those months.

  1. Deskpro72 months

Latest CVEs

The 7 most recently published vulnerabilities affecting Headstart-solutions.

  1. CVE-2007-4412Multiple cross-site scripting (XSS) vulnerabilities in Headstart Solutions DeskPRO 3.0.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters to (1) te...3.5
  2. CVE-2007-4413Direct static code injection vulnerability in admincp/user_help.php in Headstart Solutions DeskPRO 3.0.2 allows remote authenticated users to inject arbitrary PHP code into an unspecified file via ...3.5
  3. CVE-2006-6999attachment.php in Headstart Solutions DeskPRO allows remote attackers to read all uploaded files by providing the file number in a modified id parameter.4.3
  4. CVE-2006-6998install/loader_help.php in Headstart Solutions DeskPRO allows remote attackers to obtain configuration information via a q=phpinfo QUERY_STRING, which calls the phpinfo function.5.0
  5. CVE-2006-7000Headstart Solutions DeskPRO allows remote attackers to obtain the full path via direct requests to (1) email/mail.php, (2) includes/init.php, (3) certain files in includes/cron/, and (4) jpgraph.ph...5.0
  6. CVE-2006-6973Headstart Solutions DeskPRO does not require authentication for certain files and directories associated with administrative activities, which allows remote attackers to (1) reinstall the applicati...7.5
  7. CVE-2006-6974Headstart Solutions DeskPRO stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) list files in the includes/ directory; obtain the ...7.5

The record

Peak rank
#12 in Feb 2007
Busiest month shown
Feb 2007, 5 CVEs
Months with a KEV entry
0 since Feb 2007
Monthly snapshots
2 since 2007
Headstart-solutions's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store