Skip to main content

Vendor/product archive

cerberus / cerberus_helpdesk CVEs

Beta · best-effort

9 CVEs tagged to cerberus / cerberus_helpdesk0 Critical, 2 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2006-5428

Published Oct 20, 2006

rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackers to bypass the GUI login and obtain s…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4539

Published Sep 5, 2006

(1) includes/widgets/module_company_tickets.php and (2) includes/widgets/module_track_tickets.php Client Support Center in Cerberus Helpdesk 3.2 Build 317, and possibly earlier, a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-0509

Published Feb 1, 2006

Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbitrary web script or HTML via (1) the co…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4427

Published Dec 20, 2005

Multiple SQL injection vulnerabilities in Cerberus Helpdesk allow remote attackers to execute arbitrary SQL commands via the (1) file_id parameter to attachment_send.php, (2) the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-4428

Published Dec 20, 2005

Cross-site scripting (XSS) vulnerability in index.php in Cerberus Helpdesk allows remote attackers to inject arbitrary web script or HTML via the kb_ask parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3502

Published Nov 5, 2005

attachment_send.php in Cerberus Helpdesk allows remote attackers to view attachments and tickets of other users via a modified file_id parameter.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-1962

Published Jun 16, 2005

Cross-site scripting (XSS) vulnerability in Cerberus Helpdesk 0.97.3 allows remote attackers to inject arbitrary web script or HTML via the (1) errorcode parameter to index.php or…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-1963

Published Jun 16, 2005

Cerberus Helpdesk 0.97.3 allows remote attackers to obtain sensitive information via certain requests to (1) reports.php, (2) knowledgebase.php, or (3) configuration.php, which le…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1