CVE-2023-3589

Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x

Published
2023-10-09

 

Updated 
2023-10-20

 

Description
A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific conditions an attacker to send a specifically crafted query to the server.

 

Affected Products
Teamwork Cloud - Business Edition
Teamwork Cloud - Enterprise Edition
Teamwork Cloud - Business Pro Edition
Teamwork Cloud - Standard Edition

 

Affected Versions
From No Magic Release 2021x through No Magic Release 2022x

 

Severity
Medium

Go to Dassault Systèmes Security Advisories