📦 Helpdeskadvanced

by Zucchetti

🔍 What is Helpdeskadvanced?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-42231

HIGH CVSS 8.1 Jan 13, 2025

This vulnerability in Pat Infinite Solutions HelpdeskAdvanced allows low-privileged users to delete administrator accounts by sending requests to the WSCView/Delete function. It affects all installati...

CVE-2023-42232

HIGH CVSS 7.5 Jan 13, 2025

This directory traversal vulnerability in Pat Infinite Solutions HelpdeskAdvanced allows attackers to access files outside the intended directory via the Navigator/Index function. It affects organizat...

CVE-2023-42225

HIGH CVSS 7.5 Jan 13, 2025

This directory traversal vulnerability in Pat Infinite Solutions HelpdeskAdvanced allows attackers to access arbitrary files on the server by manipulating file paths in the Attachment/DownloadTempFile...

CVE-2023-42226

HIGH CVSS 7.5 Jan 13, 2025

This vulnerability allows attackers to perform directory traversal attacks through the Email/SaveAttachment function in Pat Infinite Solutions HelpdeskAdvanced. Attackers can potentially access files ...

CVE-2023-42227

HIGH CVSS 7.5 Jan 13, 2025

This vulnerability allows attackers to perform directory traversal attacks through the WSCView/Save function in Pat Infinite Solutions HelpdeskAdvanced. Attackers can potentially access sensitive file...

CVE-2023-42228

HIGH CVSS 8.8 Jan 13, 2025

This vulnerability allows low-privileged users in Pat Infinite Solutions HelpdeskAdvanced to modify their own access control rules by accessing an administrative function. This can lead to privilege e...

CVE-2023-42233

MEDIUM CVSS 6.1 Jan 13, 2025

Pat Infinite Solutions HelpdeskAdvanced versions up to 11.0.33 contain a cross-site scripting vulnerability in the Filter/FilterEditor function. This allows attackers to inject malicious scripts that ...

CVE-2023-42229

MEDIUM CVSS 6.5 Jan 13, 2025

Pat Infinite Solutions HelpdeskAdvanced versions up to 11.0.33 contain a directory traversal vulnerability in the WSConnector SOAP service. Authenticated attackers can create arbitrary files on the sy...