CVE-2022-46840: WordPress JS Help Desk plugin <= 2.7.1 - Broken Access Control
Missing Authorization vulnerability in JoomSky JS Help Desk js-support-ticket allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JS Help Desk: from n/a through <= 2.7.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-46840?
CVE-2022-46840 has a medium severity rating due to its potential to allow unauthorized access to restricted functionalities within the JS Help Desk plugin.
How do I fix CVE-2022-46840?
To fix CVE-2022-46840, update the JS Help Desk plugin to the latest version beyond 2.7.1 to ensure proper access controls are implemented.
What systems are affected by CVE-2022-46840?
CVE-2022-46840 affects JS Help Desk – Best Help Desk & Support Plugin versions up to and including 2.7.1.
What type of vulnerability is CVE-2022-46840?
CVE-2022-46840 is classified as a Missing Authorization vulnerability involving incorrectly configured access control security levels.
Can CVE-2022-46840 be exploited remotely?
Yes, CVE-2022-46840 can potentially be exploited remotely if access controls are improperly configured.