CVE-2008-1515

Publication date 1 April 2008

Last updated 24 July 2024


Ubuntu priority

Description

The SOAP interface in OTRS 2.1.x before 2.1.8 and 2.2.x before 2.2.6 allows remote attackers to "read and modify objects" via SOAP requests, related to "Missing security checks."

Read the notes from the security team

Status

Package Ubuntu Release Status
otrs 7.10 gutsy Not in release
7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected

Notes


jdstrand

otrs 1.x and 2.0.x not affected


Access our resources on patching vulnerabilities