Vulnerabilities (CVE)

Filtered by vendor Helpdezk Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-14146 1 Helpdezk 1 Helpdezk 2017-09-06 6.5 MEDIUM 8.8 HIGH
HelpDEZk 1.1.1 allows remote authenticated users to execute arbitrary PHP code by uploading a .php attachment and then requesting it in the helpdezk\app\uploads\helpdezk\attachments\ directory.
CVE-2017-7446 1 Helpdezk 1 Helpdezk 2017-08-16 6.8 MEDIUM 8.8 HIGH
HelpDEZk 1.1.1 has CSRF in admin/home#/person/ with an impact of obtaining admin privileges.
CVE-2017-7447 1 Helpdezk 1 Helpdezk 2017-08-16 6.8 MEDIUM 8.8 HIGH
HelpDEZk 1.1.1 has CSRF in admin/home#/logos/ with an impact of remote execution of arbitrary PHP code.