Vulnerabilities (CVE)

Filtered by vendor Ladybirdweb Subscribe
Filtered by product Faveo Servicedesk
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-24625 1 Ladybirdweb 1 Faveo Servicedesk 2024-11-21 N/A 6.5 MEDIUM
Faveo 5.0.1 allows remote attackers to obtain sensitive information via a modified user ID in an Insecure Direct Object Reference (IDOR) attack.