Cross-Site Scripting Vulnerabilities in Cerberus Helpdesk by Cerberus
CVE-2006-0509

Currently unrated

Key Information:

Vendor

Cerberus

Vendor
CVE Published:
1 February 2006

What is CVE-2006-0509?

Cerberus Helpdesk version 2.7 is susceptible to multiple cross-site scripting (XSS) vulnerabilities. Attackers can exploit this flaw by injecting arbitrary web scripts or HTML code through the 'contact_search' parameter and unspecified URL fields in the clients.php file. This could allow an attacker to execute malicious scripts in the context of a user's session, potentially compromising user data and security.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.