CVE-2023-37635: Critical severity webkul uvdesk vulnerability
Published Oct 23, 2023
·Updated
UVDesk Community Skeleton v1.1.1 allows unauthenticated attackers to perform brute force attacks on the login page to gain access to the application.
Affected Software
1 affected component
Uvdesk community-skeleton=1.1.1
Event History
Oct 23, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-37635?
CVE-2023-37635 is a vulnerability in UVDesk Community Skeleton v1.1.1 that allows unauthenticated attackers to perform brute force attacks on the login page to gain unauthorized access.
2
How severe is CVE-2023-37635?
CVE-2023-37635 has a severity rating of 9.8, which is considered critical.
3
Which software versions are affected by CVE-2023-37635?
CVE-2023-37635 affects UVDesk Community Skeleton v1.1.1.
4
How can I fix CVE-2023-37635?
To fix CVE-2023-37635, it is recommended to update UVDesk Community Skeleton to a version that is not affected.
5
What is the CWE ID for CVE-2023-37635?
The CWE ID for CVE-2023-37635 is 307.