Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Cerberus Helpdesk Ticket Parameter Unauthorized Access Vulnerability

Cerberus Helpdesk is prone to an unauthorized-access vulnerability because the application fails to verify the ticket parameter properly, resulting in an improper-access validation. An update that addresses this issue is available.

An attacker can exploit this vulnerability to retrieve arbitrary tickets of other users. Information obtained can lead to a compromise of other users' confidential information.

Version 3.2 Build 317 is affected by this issue; other versions may be vulnerable as well.







 

Privacy Statement
Copyright 2009, SecurityFocus