Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hp77-pqh3-vgwc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackers to bypass the GUI login and obtain sensitive information (ticket data) via a direct request.

rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackers to bypass the GUI login and obtain sensitive information (ticket data) via a direct request.

EPSS

Процентиль: 89%
0.04248
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackers to bypass the GUI login and obtain sensitive information (ticket data) via a direct request.

EPSS

Процентиль: 89%
0.04248
Низкий