First published: Tue Sep 05 2006(Updated: )
(1) includes/widgets/module_company_tickets.php and (2) includes/widgets/module_track_tickets.php Client Support Center in Cerberus Helpdesk 3.2 Build 317, and possibly earlier, allows remote attackers to bypass security restrictions and obtain sensitive information via the ticket parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webgroupmedia Cerberus Helpdesk | =3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4539 is considered a high-severity vulnerability due to its potential for remote exploitation.
To fix CVE-2006-4539, update Cerberus Helpdesk to the latest version that addresses this vulnerability.
CVE-2006-4539 enables remote attackers to bypass security restrictions and access sensitive information.
Cerberus Helpdesk versions 3.2 Build 317 and possibly earlier versions are affected by CVE-2006-4539.
CVE-2006-4539 involves the components module_company_tickets.php and module_track_tickets.php in the Cerberus Helpdesk system.