Products: 1
    Vulnerabilities: 13
    Known Exploited: 0
    0
    Critical Level Threats
    4
    High Level Threats
    9
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2021-35391

    Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary code via a crafted URL.

    Last Modified: Nov 21, 2024
    Published: Jul 21, 2023

    CVE-2021-36695

    Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in the download file feature on a manager profile due to lack of input validation.

    Last Modified: Nov 21, 2024
    Published: Sep 08, 2021

    CVE-2021-36696

    Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social media links on a user profile due to lack of input validation.

    Last Modified: Nov 21, 2024
    Published: Sep 07, 2021

    CVE-2020-28722

    Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability that can lead to an account takeover via custom email templates.

    Last Modified: Nov 21, 2024
    Published: May 12, 2021

    CVE-2020-11463

    An issue was discovered in Deskpro before 2019.8.0. The /api/email_accounts endpoint failed to properly validate a user's privilege, allowing an attacker to retrieve cleartext credentials of all helpdesk email accounts, including incoming and outgoing email credentials. This enables an attacker to get full access to all emails sent or received by the system including password reset emails, making it possible to reset any user's password.

    Last Modified: Nov 21, 2024
    Published: Apr 01, 2020
    Items Per Page
    Deskpro Vulnerabilities & Security CVEs | CVE-DB