CVE-2023-1724

Publication date

2023-06-24 00:13:34

Family

Fluid Attacks

State

PUBLISHED

Description

Faveo Helpdesk Enterprise version 6.0.1 allows an attacker with agent permissions to perform privilege escalation on the application. This occurs because the application is vulnerable to stored XSS.