VYPR
Vendor

Wyomind

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2021-33353CriMar 8, 2023
    risk 0.64cvss 9.8epss 0.02

    Directory Traversal vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via the file attachment directory setting.

  • CVE-2021-33352CriMar 8, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue in Wyomind Help Desk Magento 2 extension v.1.3.6 and before fixed in v.1.3.7 allows attacker to execute arbitrary code via a phar file upload in the ticket message field.

  • CVE-2021-33351CriMar 8, 2023
    risk 0.59cvss 9.0epss 0.01

    Cross Site Scripting Vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before and fixed in v.1.3.7 allows attackers to escalte privileges via a crafted payload in the ticket message field.