CVE-2018-19948

The vulnerability have been reported to affect earlier versions of Helpdesk. If exploited, this cross-site request forgery (CSRF) vulnerability could allow attackers to force NAS users to execute unintentional actions through a web application. QNAP has already fixed the issue in Helpdesk 3.0.3 and later.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:qnap:helpdesk:*:*:*:*:*:*:*:*

Information

Published : 2020-09-11 08:15

Updated : 2020-09-16 12:20


NVD link : CVE-2018-19948

Mitre link : CVE-2018-19948


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

qnap

  • helpdesk