Egain
4 known vulnerabilities
Top Products
eGain Chat 15.5.5 allows XSS via the Name (aka full_name) field.
The eGain Web Email API 11+ allows spoofed messages because the fromName and message fields (to /system/ws/v11/ss/email)
eGain Chat 15.0.3 allows unrestricted file upload.
eGain Chat 15.0.3 allows HTML Injection.
Frequently Asked Questions
How many CVEs affect Egain?
Egain has 4 CVE records in our database, including 1 critical and 1 high severity vulnerabilities.
What are the most severe Egain vulnerabilities?
Egain has 1 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Egain vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Egain products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Egain Vulnerabilities
CyberStrike scans your infrastructure for Egain vulnerabilities and provides real-time remediation guidance.
Get Started