10
CVSSv2

CVE-2003-0304

Published: 09/06/2003 Updated: 18/10/2016
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

one||zero (aka One or Zero) Helpdesk 1.4 rc4 allows remote malicious users to create administrator accounts by directly calling the install.php Helpdesk Installation script.

Vulnerable Product Search on Vulmon Subscribe to Product

oneorzero oneorzero helpdesk 1.4_rc4

Exploits

source: wwwsecurityfocuscom/bid/7611/info OneOrZero Helpdesk has been reported prone to an issue that may result in an attacker obtaining unauthorized administrative access The issue presents itself due to a programming error in a Helpdesk script Reportedly a script does not sufficiently check if an instance of OneOrZero Helpdesk has a ...