
CVE@CVEnew
Patch
CVE-2024-58343 Vision Helpdesk before 5.7.0 (patched in 5.6.10) allows attackers to read user profiles via modified serialized cookie data to vis_client_id. https://www.cve.org/CVERecord?id=CVE-2024-58343
Post summary
CVE-2024-58343 enables profile read via tampered cookie data in Vision Helpdesk versions prior to 5.7.0, but the issue was patched in 5.6.10, with no active exploitation or PoC evidence noted.
0000066
57.2K followersView on X
