Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yusuke Fukuda

Researcher fromCryptography Laboratory, Department of Information and Communication Engineering, Tokyo Denki University
#29382of 53,633
8.8Total CVSS
Vulnerabilities · 1
PT-2020-18609
8.8
2020-10-15
Live Support · Livechat · CVE-2020-5642
**Name of the Vulnerable Software and Affected Versions** Live Chat - Live support versions 3.1.0 and earlier **Description** A cross-site request forgery (CSRF) issue allows remote attackers to hijack the authentication of administrators via unspecified vectors. This can lead to unauthorized access and control of administrative functions. **Recommendations** For versions 3.1.0 and earlier, as a temporary workaround, consider implementing additional authentication checks to prevent CSRF attacks. Restrict access to administrative functions to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.