CVE-2023-1724
PoC —CVSS 3.1
5.4 medium
EPSS
<1%p39
Published
()
Modified
Description
Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.
- Vendors
- ladybirdweb
- Products
- faveo helpdesk
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.