All 4 CVE vulnerabilities found in HaloITSM, with AI-generated Chinese analysis, references, and POCs.
Vendor: Halo Service Solutions
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-6203 | HaloITSM - Password Reset Poisoning CWE-640 | 8.3 | High | 2024-08-06 |
| CVE-2024-6202 | HaloITSM - SAML XML Signature Wrapping (XSW) CWE-863 | 9.8 | Critical | 2024-08-06 |
| CVE-2024-6201 | HaloITSM - Emailing Template Injection | 5.3 | Medium | 2024-08-06 |
| CVE-2024-6200 | HaloITSM - Stored Cross-Site Scripting in Tickets CWE-79 | 8.0 | High | 2024-08-06 |
All 4 known CVE vulnerabilities affecting HaloITSM with full Chinese analysis, references, and POCs where available.