CVE-2015-4071
18.08.2017, 18:29
The Helpdesk Pro Plugin before 1.4.0 for Joomla! allows remote attackers to read the support tickets of arbitrary users via obtaining the target ticketId, and navigating to http://{target}/component/helpdeskpro/?view=ticket&id={ticketId}.Enginsight
Vendor | Product | Version |
---|---|---|
helpdesk_pro_project | helpdesk_pro | 𝑥 ≤ 1.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References