CVE-2024-46482: Ladybirdweb Faveo Helpdesk

High severity, CVSS 8.2. EPSS: 0.4% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.

Affected products

Published 2024-10-22. Last modified 2026-06-17.