PT-2018-9772 · Topdesk · Topdesk

Frank Spierings

·

Publicado

2018-07-11

·

Atualizado

2020-07-20

·

CVE-2018-10232

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: TOPdesk versions prior to 8.05.017 TOPdesk versions prior to 5.7.SR9
Description: A cross-site request forgery issue allows remote attackers to hijack the authentication of authenticated users for requests that can obtain sensitive information.
Recommendations: For versions prior to 8.05.017, update to version 8.05.017 or later. For versions prior to 5.7.SR9, update to version 5.7.SR9 or later.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-10232

Produtos afetados

Topdesk