Vulnerabilities > CVE-2022-1044 - Insecure Storage of Sensitive Information vulnerability in Trudesk Project Trudesk

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
trudesk-project
CWE-922

Summary

Sensitive Data Exposure Due To Insecure Storage Of Profile Image in GitHub repository polonel/trudesk prior to v1.2.1.

Common Weakness Enumeration (CWE)