Record summary

CVE-2015-4071 has a selected CVSS score of 5.3 (medium); EIP currently links 1 catalogued exploit.

Description

The Helpdesk Pro Plugin before 1.4.0 for Joomla! allows remote attackers to read the support tickets of arbitrary users via obtaining the target ticketId, and navigating to http://{target}/component/helpdeskpro/?view=ticket&id={ticketId}.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBJoomla! Component Helpdesk Pro < 1.4.0 - Multiple VulnerabilitiesExploitDB exploitby Simon RawetNot analyzed1 file

linked to 5 vulnerabilities

ExploitDB

PoC details

References

6