TITLE: Cerberus Helpdesk Disclosure of Attachments SECUNIA ADVISORY ID: SA17431 VERIFY ADVISORY: http://secunia.com/advisories/17431/ CRITICAL: Less critical IMPACT: Exposure of sensitive information WHERE: >From remote SOFTWARE: Cerberus Helpdesk 2.x http://secunia.com/product/5227/ DESCRIPTION: cumhur onat has reported a vulnerability in Cerberus Helpdesk, which can be exploited by malicious users to disclose sensitive information. The vulnerability is caused due to inadequate authentication checks when accessing tickets. This can be exploited to disclose the content of attachments submitted by other users by manipulating the "file_id" parameter passed to "attachment_send.php". SOLUTION: Edit the source code to ensure that access to tickets is properly verified. PROVIDED AND/OR DISCOVERED BY: cumhur onat ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------