CVE-2018-10232

Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows remote attackers to hijack the authentication of authenticated users for requests that can obtain sensitive information via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:topdesk:topdesk:*:*:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:-:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release1:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release2:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release3:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release4:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release5:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release6:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release7:*:*:*:*:*:*
cpe:2.3:a:topdesk:topdesk:5.7:service_release8:*:*:*:*:*:*

History

No history.

Information

Published : 2018-07-11 17:29

Updated : 2024-02-04 20:03


NVD link : CVE-2018-10232

Mitre link : CVE-2018-10232

CVE.ORG link : CVE-2018-10232


JSON object : View

Products Affected

topdesk

  • topdesk
CWE
CWE-352

Cross-Site Request Forgery (CSRF)