CVE-2004-2736
Polar HelpDesk 3.0 - Unauthenticated Authentication Bypass via Cookie Manipulation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-2736. PoCs published by Noam Rathaus.
AI-analyzed exploit summary This Perl script exploits an authentication bypass vulnerability in Polar Helpdesk by manipulating cookie values to gain administrative access. It then enumerates user lists, emails, inbox tickets, and billing information including credit card details.
Description
Polar HelpDesk 3.0 allows remote attackers to bypass authentication by setting the UserId and UserType values in a cookie.
Exploits (1)
This Perl script exploits an authentication bypass vulnerability in Polar Helpdesk by manipulating cookie values to gain administrative access. It then enumerates user lists, emails, inbox tickets, and billing information including credit card details.