PT-2026-33372 · Unknown · Vision Helpdesk

Published

2024-09-17

·

Updated

2026-04-17

·

CVE-2024-58343

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Vision Helpdesk versions prior to 5.6.10
Description An issue allows attackers to read user profiles by modifying serialized cookie data associated with the vis client id variable.
Recommendations Update to version 5.6.10 or later.

Exploit

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-07545
CVE-2024-58343

Affected Products

Vision Helpdesk