📦 Haloitsm

by Haloservicesolutions

🔍 What is Haloitsm?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-6202

CRITICAL CVSS 9.8 Aug 6, 2024

HaloITSM versions up to 2.146.1 have a SAML XML Signature Wrapping vulnerability that allows anonymous attackers to impersonate any user by knowing their email address. This affects all organizations ...

CVE-2024-6201

MEDIUM CVSS 5.3 Aug 6, 2024

HaloITSM versions up to 2.146.1 contain a template injection vulnerability in the email generation engine that allows attackers to execute arbitrary code in email templates. This can lead to sensitive...