CVE-2023-1724
Faveo Helpdesk Enterprise 6.0.1 - Privilege Escalation via Stored XSS
Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
Affected products
Ladybirdweb · Faveo HelpdeskWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →