Description
Multiple persistent input validation vulnerabilities are detected in the Kayako Fusion v4.51.1891 Web Application. The vulnerability typus allows an attacker to inject own malicious script code in the vulnerable module on application side (persistent). The vulnerabilities can be exploited with a privileged application user account and low or medium required user interaction.
Remediation
Upgrade to the latest version of Kayako Fusion.
References
Related Vulnerabilities
Magento Cryptographic Issues Vulnerability (CVE-2019-7860)
SharePoint CVE-2023-29357 Vulnerability (CVE-2023-29357)
Oracle Application Server CVE-2008-0346 Vulnerability (CVE-2008-0346)
Ruby Out-of-bounds Read Vulnerability (CVE-2022-28739)
Three.js Uncontrolled Resource Consumption Vulnerability (CVE-2020-28496)