Medium severity6.5NVD Advisory· Published Jun 24, 2024· Updated Jun 17, 2026
CVE-2021-45785
CVE-2021-45785
Description
TruDesk Help Desk/Ticketing Solution v1.1.11 is vulnerable to a Cross-Site Request Forgery (CSRF) attack which would allow an attacker to restart the server, causing a DoS attack. The attacker must craft a webpage that would perform a GET request to the /api/v1/admin/restart endpoint, then the victim (who has sufficient privileges), would visit the page and the server restart would begin. The attacker must know the full URL that TruDesk is on in order to craft the webpage.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- TruDesk/Help Desk/Ticketing Solutiondescription
- Range: =1.1.11
- cpe:2.3:a:trudesk_project:trudesk:1.1.11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- 1d8.github.io/cves/cve_2021_45785/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.