Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wwv9-4fxw-2hvj

Опубликовано: 09 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.4

Описание

A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x allows an attacker to send a specifically crafted query to the server.

A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x allows an attacker to send a specifically crafted query to the server.

EPSS

Процентиль: 36%
0.00155
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 6.8
nvd
больше 2 лет назад

A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send a specifically crafted query to the server.

EPSS

Процентиль: 36%
0.00155
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-352