Help Desk Reloaded Free Help Desk does not remove or protect install.php once installation is complete, which allows remote attackers to gain privileges via a direct request to install.php, then navigating to accountsetup.php and creating a new user.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Free_help_desk | Help_desk_reloaded | * | * |