CVE-2023-3589: Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x
A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send a specifically crafted query to the server.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-3589?
CVE-2023-3589 is a Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x.
How does CVE-2023-3589 affect Teamwork Cloud?
CVE-2023-3589 allows an attacker to send a specifically crafted query to the server.
What is the severity of CVE-2023-3589?
CVE-2023-3589 has a severity rating of 8.8 (high).
How do I fix CVE-2023-3589 in Teamwork Cloud?
To fix CVE-2023-3589, users should upgrade to the latest version of No Magic Release (2023x) from the official 3DS website.
Where can I find more information about CVE-2023-3589?
More information about CVE-2023-3589 can be found on the official 3DS vulnerability advisories page at https://www.3ds.com/vulnerability/advisories.