CVE Tools

Saleslogix-corporation

8 CVEs tracked since 2005. Since Feb 2005, none of them reached CISA KEV.

Saleslogix-corporation CVEs per month

Feb 2005 to Feb 2005. Point at a month, or focus the strip and use the arrow keys.
Saleslogix-corporation CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0280

Products

The products that kept showing up in Saleslogix-corporation's monthly top three, with their CVEs summed over those months.

  1. Saleslogix81 month

Latest CVEs

The 8 most recently published vulnerabilities affecting Saleslogix-corporation.

  1. CVE-2004-1612Directory traversal vulnerability in SalesLogix 6.1 allows remote attackers to upload arbitrary files via a .. (dot dot) in a ProcessQueueFile request.5.0
  2. CVE-2004-1609SalesLogix 6.1 includes usernames, passwords, and other sensitive information in the headers of an HTTP response, which could allow remote attackers to gain access.5.0
  3. CVE-2004-1607slxweb.dll in SalesLogix 6.1 allows remote attackers to obtain sensitive information via a (1) Library or (2) Attachment request with an invalid file parameter, which reveals the path in an error m...5.0
  4. CVE-2004-1606slxweb.dll in SalesLogix 6.1 allows remote attackers to cause a denial service (application crash) via an invalid HTTP request, which might also leak sensitive information in the ErrorLogMsg cookie.6.4
  5. CVE-2004-1611SalesLogix 6.1 does not verify if a user is authenticated before performing sensitive operations, which could allow remote attackers to (1) execute arbitrary SLX commands on the server or spoof the...5.1
  6. CVE-2004-1610SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary files and execute code via the (1) vMME.AttachmentPath or ...7.5
  7. CVE-2004-1605SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype=Administrator.7.5
  8. CVE-2004-1608SQL injection vulnerability in SalesLogix 6.1 allows remote attackers to execute arbitrary SQL statements via the id parameter in a view operation.7.5

The record

Peak rank
#17 in Feb 2005
Busiest month shown
Feb 2005, 8 CVEs
Months with a KEV entry
0 since Feb 2005
Monthly snapshots
1 since 2005
Saleslogix-corporation's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store