Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
rpc.php in Cerberus Helpdesk 3.2.1 does not verify a client's privileges for a display_get_requesters operation, which allows remote attackers to bypass the GUI login and obtain sensitive information (ticket data) via a direct request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cerberus Helpdesk 'Rpc.PHP'未经授权的访问漏洞
Vulnerability Description
Cerberus Helpdesk 3.2.1的rpc.php并未针对display_get_requesters操作验证客户端的权限,远程攻击者可以通过直接请求来绕过GUI登录并获取敏感信息(票务数据)。
CVSS Information
N/A
Vulnerability Type
N/A