First published: Tue Dec 20 2005(Updated: )
Cross-site scripting (XSS) vulnerability in index.php in Cerberus Helpdesk allows remote attackers to inject arbitrary web script or HTML via the kb_ask parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webgroupmedia Cerberus Helpdesk | =2.649 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4428 is considered a high severity cross-site scripting vulnerability.
To fix CVE-2005-4428, you should update Cerberus Helpdesk to a version that has patched this vulnerability.
CVE-2005-4428 specifically affects Cerberus Helpdesk version 2.649.
CVE-2005-4428 allows remote attackers to perform cross-site scripting (XSS) attacks.
Yes, CVE-2005-4428 can be exploited by unauthenticated attackers through the kb_ask parameter.