CVE Published: 09/10/2023 |
CVE Updated: 19/09/2024 |
CVE Year: 2023 Source: 3DS |
Vendor: Dassault Systèmes |
Product: Teamwork Cloud - Business Edition Status : PUBLISHED
CVE-2023-3589 Description
A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send a specifically crafted query to the server.
Metrics
CVSS Version: 3.1 |
Base Score: 6.8 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N