Description
An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 23 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ladybirdweb
Ladybirdweb faveo Helpdesk |
|
| Weaknesses | CWE-434 CWE-79 |
|
| CPEs | cpe:2.3:a:ladybirdweb:faveo_helpdesk:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ladybirdweb
Ladybirdweb faveo Helpdesk |
|
| Metrics |
cvssV3_1
|
Tue, 22 Oct 2024 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-23T17:21:50.871Z
Reserved: 2024-09-11T00:00:00.000Z
Link: CVE-2024-46482
Updated: 2024-10-23T17:21:26.673Z
Status : Deferred
Published: 2024-10-22T22:15:05.633
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-46482
No data.
OpenCVE Enrichment
No data.