Known Vulnerabilities for products from Enghouse

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Enghouse".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-45883 json A privilege escalation vulnerability exists within the Qumu Multicast Extension v2 before 2.0.63 for Windows. When a standard... 7.8 - HIGH 2023-10-19 2023-10-27
CVE-2020-13972 json Enghouse Web Chat 6.2.284.34 allows XSS. When one enters their own domain name in the WebServiceLocation parameter, the respo... 6.1 - MEDIUM 2020-09-03 2020-09-08
CVE-2019-16951 json A remote file include (RFI) issue was discovered in Enghouse Web Chat 6.2.284.34. One can replace the localhost attribute wit... 5.3 - MEDIUM 2019-11-13 2021-07-21
CVE-2019-16950 json An XSS issue was discovered in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. The QueueName parameter of a GET request allows f... 6.1 - MEDIUM 2019-11-13 2019-11-15
CVE-2019-16949 json An issue was discovered in Enghouse Web Chat 6.1.300.31 and 6.2.284.34. A user is allowed to send an archive of their chat lo... 6.5 - MEDIUM 2019-11-13 2019-11-15
CVE-2019-16948 json An SSRF issue was discovered in Enghouse Web Chat 6.1.300.31. In any POST request, one can replace the port number at WebServ... 9.8 - CRITICAL 2019-11-13 2019-11-18
CVE-2018-8940 json ClientServiceConfigController.cs in Enghouse Cloud Contact Center Platform 7.2.5 has functionality for loading external XML f... 9.8 - CRITICAL 2019-05-14 2019-05-15

Known software with vulnerabilities from Enghouse

Type Vendor Product Version
ApplicationEnghouseContact Center_service_provider
ApplicationEnghouseWeb Chat6.1.300.31

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report