CVE-2020-13658

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
30/09/2020
Last modified:
15/10/2020

Description

In Lansweeper 8.0.130.17, the web console is vulnerable to a CSRF attack that would allow a low-level Lansweeper user to elevate their privileges within the application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lansweeper:lansweeper:8.0.130.17:*:*:*:*:*:*:*