Vulnerabilities > CVE-2006-0509 - Cross-Site Scripting vulnerability in Cerberus Helpdesk 2.7/2.7.1Developmentrelease

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
cerberus
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in clients.php in Cerberus Helpdesk, possibly 2.7, allow remote attackers to inject arbitrary web script or HTML via (1) the contact_search parameter and (2) unspecified url fields.

Vulnerable Configurations

Part Description Count
Application
Cerberus
2

Exploit-Db

descriptionCerberus Helpdesk 2.7 Clients.PHP Cross-Site Scripting Vulnerability. CVE-2006-0509. Webapps exploit for php platform
idEDB-ID:27153
last seen2016-02-03
modified2006-01-31
published2006-01-31
reporter[email protected]
sourcehttps://www.exploit-db.com/download/27153/
titleCerberus Helpdesk 2.7 Clients.PHP Cross-Site Scripting Vulnerability