Lucene search

K

Topdesk Security Vulnerabilities

cve
cve

CVE-2023-34923

XML Signature Wrapping (XSW) in SAML-based Single Sign-on feature in TOPdesk v12.10.12 allows bad actors with credentials to authenticate with the Identity Provider (IP) to impersonate any TOPdesk user via SAML Response...

8.1CVSS

7.9AI Score

0.001EPSS

2023-06-22 07:15 PM
7
cve
cve

CVE-2018-10232

Cross-site request forgery (CSRF) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows remote attackers to hijack the authentication of authenticated users for requests that can obtain sensitive information via unspecified...

6.5CVSS

6.5AI Score

0.001EPSS

2018-07-11 05:29 PM
22
cve
cve

CVE-2018-10231

Cross-site scripting (XSS) vulnerability in TOPdesk before 8.05.017 (June 2018 version) and before 5.7.SR9 allows remote attackers to inject arbitrary web script or HTML via unspecified...

6.1CVSS

6AI Score

0.001EPSS

2018-07-11 05:29 PM
19
cve
cve

CVE-2017-7276

There is reflected XSS in TOPdesk before 5.7.6 and 6.x and 7.x before...

6.1CVSS

6AI Score

0.001EPSS

2017-07-04 06:29 PM
22