Логотип exploitDog
bind:CVE-2020-11465
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11465

Количество 2

Количество 2

nvd логотип

CVE-2020-11465

почти 6 лет назад

An issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an attacker to control/install helpdesk applications and leak current applications' configurations, including applications used as user sources (used for authentication). This enables an attacker to forge valid authentication models that resembles any user on the system.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2j38-pmwm-2h3f

больше 3 лет назад

An issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an attacker to control/install helpdesk applications and leak current applications' configurations, including applications used as user sources (used for authentication). This enables an attacker to forge valid authentication models that resembles any user on the system.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11465

An issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an attacker to control/install helpdesk applications and leak current applications' configurations, including applications used as user sources (used for authentication). This enables an attacker to forge valid authentication models that resembles any user on the system.

CVSS3: 8.8
1%
Низкий
почти 6 лет назад
github логотип
GHSA-2j38-pmwm-2h3f

An issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an attacker to control/install helpdesk applications and leak current applications' configurations, including applications used as user sources (used for authentication). This enables an attacker to forge valid authentication models that resembles any user on the system.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу