Vulnerability Details CVE-2024-2078
A Cross-Site Scripting (XSS) vulnerability has been found in HelpDeskZ affecting version 2.0.2 and earlier. This vulnerability could allow an attacker to send a specially crafted JavaScript payload within the email field and partially take control of an authenticated user's browser session.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.0%
CVSS Severity
CVSS v3 Score 4.6
Products affected by CVE-2024-2078
-
cpe:2.3:a:helpdeskz:helpdeskz:2.0
-
cpe:2.3:a:helpdeskz:helpdeskz:2.0.1
-
cpe:2.3:a:helpdeskz:helpdeskz:2.0.2