8.8
CVSSv3

CVE-2023-25350

Published: 24/03/2023 Updated: 29/03/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Faveo Helpdesk 1.0-1.11.1 is vulnerable to SQL Injection. When the user logs in through the login box, he has no judgment on the validity of the user's input data. The parameters passed from the front end to the back end are controllable, which will lead to SQL injection.

Vulnerable Product Search on Vulmon Subscribe to Product

ladybirdweb faveo helpdesk