Vulnerabilities > CVE-2023-1125 - Unspecified vulnerability in Wpruby Ruby Help Desk
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
The Ruby Help Desk WordPress plugin before 1.3.4 does not ensure that the ticket being modified belongs to the user making the request, allowing an attacker to close and/or add files and replies to tickets other than their own.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 8 |