CVE-2024-56222: WordPress CodeBard Help Desk plugin <= 1.1.1 - Cross Site Request Forgery (CSRF) vulnerability
Published Dec 31, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in CodeBard CodeBard Help Desk codebard-help-desk allows Cross Site Request Forgery.This issue affects CodeBard Help Desk: from n/a through <= 1.1.1.
Affected Software
3 affected components
Codebard Codebard Help Desk Wordpress<1.1.2
Codebard Help Desk<=1.1.1
WordPress CodeBard Help Desk plugin<=1.1.1
Remediation
Information
Update the WordPress CodeBard Help Desk wordpress plugin to the latest available version (at least 1.1.2).
Event History
Dec 31, 2024
CVE Published
via MITRE·10:07 AM
Data Sourced
via MITRE·10:07 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-56222?
CVE-2024-56222 is classified as a medium severity Cross-Site Request Forgery vulnerability.
2
How do I fix CVE-2024-56222?
To fix CVE-2024-56222, ensure that you update the CodeBard Help Desk plugin to the latest version beyond 1.1.1.
3
What types of attacks can CVE-2024-56222 facilitate?
CVE-2024-56222 can facilitate Cross-Site Request Forgery attacks, allowing unauthorized actions to be performed on behalf of users.
4
Which versions of the CodeBard Help Desk are affected by CVE-2024-56222?
CVE-2024-56222 affects all versions of CodeBard Help Desk up to and including version 1.1.1.
5
Is authentication required to exploit CVE-2024-56222?
CVE-2024-56222 can be exploited without authentication, making it particularly concerning for users of vulnerable versions.