Uvdesk
Webkul · 3 CVEs
CVE-2024-0916
CRITICAL
Unauthenticated Remote Code Execution in UvDesk Community
Apr 25, 2024
CVE-2023-37636
MEDIUM
A stored cross-site scripting (XSS) vulnerability in UVDesk Community Skeleton v1.1.1 allows attackers to execute arbit…
Oct 23, 2023
CVE-2023-39147
HIGH
An arbitrary file upload vulnerability in Uvdesk 1.1.3 allows attackers to execute arbitrary code via uploading a craft…
Aug 1, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-0916 | Unauthenticated Remote Code Execution in UvDesk Community | CRITICAL | 1.00% | Apr 25, 2024 |
| CVE-2023-37636 | A stored cross-site scripting (XSS) vulnerability in UVDesk Community Skeleton v1.1.1 allows attackers to execute arbitrary web scripts or HTML via a crafted p… | MEDIUM | 0.35% | Oct 23, 2023 |
| CVE-2023-39147 | An arbitrary file upload vulnerability in Uvdesk 1.1.3 allows attackers to execute arbitrary code via uploading a crafted image file. | HIGH | 1.23% | Aug 1, 2023 |
Showing 1 to 3 of 3 CVEs