CVE-2024-46482: Ladybirdweb Faveo Helpdesk
High severity, CVSS 8.2. EPSS: 0.4% chance of exploitation in the next 30 days.
An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.
Affected products
- Ladybirdweb Faveo Helpdesk: version 2.0.3 only
Published 2024-10-22. Last modified 2026-06-17.