Unrated severityNVD Advisory· Published Sep 21, 2005· Updated Apr 16, 2026
CVE-2005-3005
CVE-2005-3005
Description
Helpdesk Software Hesk allows remote attackers to bypass authentication for (1) admin.php and (2) admin_main.php by modifying the PHPSESSID session ID parameter or cookie.
Affected products
2cpe:2.3:a:helpdesk_software:hesk:0.92:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:helpdesk_software:hesk:0.92:*:*:*:*:*:*:*
- cpe:2.3:a:helpdesk_software:hesk:0.93:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- secunia.com/advisories/16859nvdPatchVendor Advisory
- www.phpjunkyard.com/extras/hesk_0931_patch.zipnvdPatch
- www.securityfocus.com/bid/14879nvdExploitPatch
- marc.infonvd
- www.vupen.com/english/advisories/2005/1792nvd
News mentions
0No linked articles in our index yet.