361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
533
This Week
8 results · Page 1/1
Unauthenticated file upload allows remote code execution. This issue affects UvDesk Community: from 1.0.0 through 1.1.3.
Improper Privilege Management in uvdesk/community-skeleton
A stored cross-site scripting (XSS) vulnerability in UVDesk Community Skeleton v1.1.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Message field when creating a ticket.
webkul
UVDesk Community Skeleton v1.1.1 allows unauthenticated attackers to perform brute force attacks on the login page to gain access to the application.
uvdesk