📦 Vdesk

by Liveboxcloud

🔍 What is Vdesk?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-45173

CRITICAL CVSS 9.8 Apr 14, 2023

This vulnerability allows attackers to bypass two-factor authentication in LIVEBOX Collaboration vDesk by manipulating client-side verification of TOTP challenges. Attackers can modify API responses t...

CVE-2022-45171

HIGH CVSS 8.8 May 28, 2024

This vulnerability allows authenticated remote users to upload dangerous file types without restrictions in LIVEBOX Collaboration vDesk's vShare web section. Attackers could upload malicious files lik...

CVE-2022-45177

HIGH CVSS 7.5 Feb 21, 2024

This vulnerability in LIVEBOX Collaboration vDesk allows attackers to infer internal system state information through observable response discrepancies at specific API endpoints. It affects all users ...

CVE-2022-45178

HIGH CVSS 8.8 Apr 14, 2023

This CVE describes a broken access control vulnerability in LIVEBOX Collaboration vDesk that allows authenticated SAML users to escalate privileges from low-privilege accounts to administrative roles....

CVE-2022-45168

MEDIUM CVSS 6.5 Jun 10, 2024

This vulnerability allows attackers to bypass two-factor authentication in LIVEBOX Collaboration vDesk by generating backup codes before TOTP verification. It affects all users of vDesk through versio...