Vulnerability Description
A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send a specifically crafted query to the server.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 3Ds | Teamwork Cloud No Magic Release | 2021x |
Related Weaknesses (CWE)
References
- https://www.3ds.com/vulnerability/advisoriesIssue TrackingVendor Advisory
- https://www.3ds.com/vulnerability/advisoriesIssue TrackingVendor Advisory
FAQ
What is CVE-2023-3589?
CVE-2023-3589 is a vulnerability with a CVSS score of 6.8 (MEDIUM). A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send...
How severe is CVE-2023-3589?
CVE-2023-3589 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-3589?
Check the references section above for vendor advisories and patch information. Affected products include: 3Ds Teamwork Cloud No Magic Release.