Vulnerabilities > CVE-2003-0304 - Remote Security vulnerability in Oneorzero Helpdesk 1.4Rc4

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
oneorzero
critical
exploit available

Summary

one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote attackers to create administrator accounts by directly calling the install.php Helpdesk Installation script.

Vulnerable Configurations

Part Description Count
Application
Oneorzero
1

Exploit-Db

descriptionOneOrZero Helpdesk 1.4 Install.PHP Administrative Access Vulnerability. CVE-2003-0304. Webapps exploit for php platform
idEDB-ID:22606
last seen2016-02-02
modified2003-05-15
published2003-05-15
reporterfrog
sourcehttps://www.exploit-db.com/download/22606/
titleOneOrZero Helpdesk 1.4 Install.PHP Administrative Access Vulnerability