CVE-2024-27125: Helpdesk
A cross-site scripting (XSS) vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability could allow authenticated administrators to inject malicious code via a network.
We have already fixed the vulnerability in the following version: Helpdesk 3.3.1 and later
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-27125?
CVE-2024-27125 has been classified as a cross-site scripting (XSS) vulnerability affecting Helpdesk, posing significant risk if exploited.
How do I fix CVE-2024-27125?
To fix CVE-2024-27125, upgrade to Helpdesk version 3.3.1 or later.
Who is affected by CVE-2024-27125?
Authenticated administrators using Helpdesk versions prior to 3.3.1 are affected by CVE-2024-27125.
What could happen if CVE-2024-27125 is exploited?
If exploited, CVE-2024-27125 could allow attackers to inject malicious code into the Helpdesk application.
Is CVE-2024-27125 an issue in all versions of Helpdesk?
CVE-2024-27125 affects all versions of Helpdesk prior to version 3.3.1.