E Supportportal maintains a narrowly scoped suite of support and customer-service portal products, with vulnerabilities concentrated in its ESCON Supportportal and ESCON Supportportal Pro offerings. The observed disclosures reflect the input-handling and authentication attack surface typical of web-based support applications. Current vulnerability counts and severity distribution are shown alongside this summary.
The number and severity of CVEs published that impact products developed by E Supportportal over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2603HIGH Multiple SQL injection vulnerabilities in index.php in Escon SupportPortal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) cat and (2) tid parameters. | Jul 27, 2009 | 7.5 | 28 | NO | YES |
CVE-2012-2590MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in ESCON SupportPortal Professional Edition 3.0 allow remote attackers to inject arbitrary web script or HTML via an e-mail mess | Aug 12, 2012 | 4.3 | 27 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by E Supportportal.
Media articles that mention a CVE ID that affects a product developed by E Supportportal — matched by CVE ID, not by vendor name.