CVE-2023-37635: Uvdesk Community-Skeleton

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

UVDesk Community Skeleton v1.1.1 allows unauthenticated attackers to perform brute force attacks on the login page to gain access to the application.

Affected products

  • Uvdesk Community-Skeleton: version 1.1.1 only

Published 2023-10-23. Last modified 2026-06-17.