Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.
Metrics
Affected Vendors & Products
References
History
Wed, 27 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: Fluid Attacks
Published: 2023-06-24T00:13:34.926Z
Updated: 2024-11-27T19:53:59.275Z
Reserved: 2023-03-30T10:59:15.825Z
Link: CVE-2023-1724
Vulnrichment
Updated: 2024-08-02T05:57:25.241Z
NVD
Status : Modified
Published: 2023-06-24T01:15:08.543
Modified: 2024-11-21T07:39:46.423
Link: CVE-2023-1724
Redhat
No data.