Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-0265
HistoryApr 04, 2023 - 10:15 p.m.

Code injection

2023-04-0422:15:00
PRIOn knowledge base
www.prio-n.com
4
code injection
uvdesk 1.1.1
remote attacker
execute commands
server security

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

46.5%

Uvdesk version 1.1.1 allows an authenticated remote attacker to execute commands on the server. This is possible because the application does not properly validate profile pictures uploaded by customers.

CPENameOperatorVersion
community-skeletoneq1.1.1

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

46.5%

Related for PRION:CVE-2023-0265