Vulnerabilities > Trudesk Project > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-24 CVE-2021-45785 Cross-Site Request Forgery (CSRF) vulnerability in Trudesk Project Trudesk 1.1.11
TruDesk Help Desk/Ticketing Solution v1.1.11 is vulnerable to a Cross-Site Request Forgery (CSRF) attack which would allow an attacker to restart the server, causing a DoS attack.
network
low complexity
trudesk-project CWE-352
6.5
2022-09-29 CVE-2022-1719 Cross-site Scripting vulnerability in Trudesk Project Trudesk
Reflected XSS on ticket filter function in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-79
5.4
2022-05-31 CVE-2022-1947 Unspecified vulnerability in Trudesk Project Trudesk
Use of Incorrect Operator in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project
4.0
2022-05-31 CVE-2022-1808 Unspecified vulnerability in Trudesk Project Trudesk
Execution with Unnecessary Privileges in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project
6.5
2022-05-31 CVE-2022-1893 Improper Cross-boundary Removal of Sensitive Data vulnerability in Trudesk Project Trudesk
Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project CWE-212
5.3
2022-05-31 CVE-2022-1926 Integer Overflow or Wraparound vulnerability in Trudesk Project Trudesk
Integer Overflow or Wraparound in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project CWE-190
4.0
2022-05-31 CVE-2022-1931 Improper Synchronization vulnerability in Trudesk Project Trudesk
Incorrect Synchronization in GitHub repository polonel/trudesk prior to 1.2.3.
network
low complexity
trudesk-project CWE-662
5.5
2022-05-21 CVE-2022-1752 Unrestricted Upload of File with Dangerous Type vulnerability in Trudesk Project Trudesk
Unrestricted Upload of File with Dangerous Type in GitHub repository polonel/trudesk prior to 1.2.2.
6.0
2022-05-20 CVE-2022-1803 Improper Restriction of Rendered UI Layers or Frames vulnerability in Trudesk Project Trudesk
Improper Restriction of Rendered UI Layers or Frames in GitHub repository polonel/trudesk prior to 1.2.2.
4.9
2022-05-20 CVE-2022-1770 Improper Privilege Management vulnerability in Trudesk Project Trudesk
Improper Privilege Management in GitHub repository polonel/trudesk prior to 1.2.2.
network
low complexity
trudesk-project CWE-269
6.5