Helpdesk software Hesk 0.92 does not properly verify usernames and passwords, which allows remote attackers to bypass authentication via a direct request to admin_main.php.
References
Configurations
History
21 Nov 2024, 00:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=112534893423213&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=112545306117124&w=2 - | |
References | () http://secunia.com/advisories/16623/ - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/14692 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/22054 - |
Information
Published : 2005-09-08 10:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-2843
Mitre link : CVE-2005-2843
CVE.ORG link : CVE-2005-2843
JSON object : View
Products Affected
helpdesk_software
- hesk
CWE