Product
uvdesk community skeleton
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-37635
CVE-2023-0325
CVE-2023-0265
CVE-2023-1197
all versions
UVDesk Community Skeleton v1.1.1 allows unauthenticated attackers to perform brute force attacks on the login page to gain access
all versions
Uvdesk version 1.1.1 allows an unauthenticated remote attacker to exploit a stored XSS in the application. This is possible becaus
all versions
Uvdesk version 1.1.1 allows an authenticated remote attacker to execute commands on the server. This is possible because the appli
< 1.1.0
Cross-site Scripting (XSS) - Stored in GitHub repository uvdesk/community-skeleton prior to 1.1.0.