Vulnerability CVE-2023-1724


Published: 2023-06-24

Description:
Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.



 References:
https://github.com/ladybirdweb/faveo-helpdesk/
https://fluidattacks.com/advisories/towers/

Copyright 2026, cxsecurity.com

 

Back to Top