ZeroHour

CVE-2023-1724

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p39
Published
()
Modified
Description

Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.

Vendors
ladybirdweb
Products
faveo helpdesk
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.