CVE-2024-34992: SQL Injection
SQL Injection vulnerability in the module "Help Desk - Customer Support Management System" (helpdesk) up to version 2.4.0 from FME Modules for PrestaShop allows attackers to obtain sensitive information and cause other impacts via 'Tickets::getsearchedtickets()'
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-34992?
CVE-2024-34992 has a high severity rating due to its potential to expose sensitive information and facilitate unauthorized access.
How do I fix CVE-2024-34992?
To fix CVE-2024-34992, upgrade the Help Desk - Customer Support Management System module to version 2.4.1 or later.
Which versions are affected by CVE-2024-34992?
CVE-2024-34992 affects all versions of the Help Desk - Customer Support Management System module up to version 2.4.0.
What kind of vulnerability is CVE-2024-34992?
CVE-2024-34992 is an SQL Injection vulnerability allowing attackers to manipulate database queries.
What impact can CVE-2024-34992 have on my system?
CVE-2024-34992 can lead to unauthorized access to sensitive data and potential data manipulation.