|
|
Info |
Last Modified |
| 7 months ago |
|
|
|
|
Description |
Cerberus Helpdesk contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered due to missing access verification in the Client Support Center when viewing tickets, which will disclose other users' tickets informations by changing the 'ticket' parameter resulting in a loss of confidentiality.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Information Disclosure
Impact:
Loss of Confidentiality
Exploit:
Exploit Unknown
|
|
Solution |
Currently, there are no known workarounds or upgrades to correct this issue. However, WebGroup Media LLC has released a patch to address this vulnerability.
|
|
Products |
|
Cerberus Helpdesk
 |
3.2 Build 317 |
|
|
|
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|