Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.4.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HTrudesk Project Trudesk
APPTrudesk Project< 1.2.4
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2022-2023CRITICAL9.8PL ✓same product
Nieprawidłowe użycie uprzywilejowanych API w Trudesk przed wersją 1.2.4
CVE-2022-1775CRITICAL9.8PL ✓same product
Słabe wymagania dotyczące haseł w Trudesk (brak wymuszania złożoności)
CVE-2022-1718HIGH7.5same product
The trudesk application allows large characters to insert in the input field "Full Name" on the signup field w...
CVE-2022-1931HIGH8.1same product
Incorrect Synchronization in GitHub repository polonel/trudesk prior to 1.2.3.
CVE-2022-1808HIGH8.8same product
Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.