Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

51 – 60 of 129 results


CVE-2020-1765

Medium priority
Needs evaluation

An improper control of parameters allows the spoofing of the from fields of the following screens: AgentTicketCompose, AgentTicketForward, AgentTicketBounce and AgentTicketEmailOutbound. This issue affects: ((OTRS)) Community...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Needs evaluation Needs evaluation
Show less packages

CVE-2019-18179

Medium priority
Vulnerable

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.12, and Community Edition 5.0.x through 5.0.38 and 6.0.x through 6.0.23. An attacker who is logged into OTRS as an agent is able to list tickets...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2019-18180

Medium priority
Vulnerable

Improper Check for filenames with overly long extensions in PostMaster (sending in email) or uploading files (e.g. attaching files to mails) of ((OTRS)) Community Edition and OTRS allows an remote attacker to cause an endless...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2013-2625

Medium priority
Ignored

An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not affected
Show less packages

CVE-2019-13458

Medium priority

Some fixes available 6 of 10

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, and Community Edition 5.0.x through 5.0.36 and 6.0.x through 6.0.19. An attacker who is logged into OTRS as an agent user with...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Fixed Fixed Vulnerable Vulnerable
Show less packages

CVE-2019-12746

Medium priority

Some fixes available 6 of 10

An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36 and 6.0.x through 6.0.19. A user logged into OTRS as an agent might unknowingly disclose their session ID by sharing the link of...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Fixed Fixed Vulnerable Vulnerable
Show less packages

CVE-2018-11563

Medium priority
Vulnerable

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2019-12248

Medium priority
Vulnerable

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.7, Community Edition 6.0.x through 6.0.19, and Community Edition 5.0.x through 5.0.36. An attacker could send a malicious email to an OTRS system. If a...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2019-12497

Medium priority
Vulnerable

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, Community Edition 6.0.x through 6.0.19, and Community Edition 5.0.x through 5.0.36. In the customer or external frontend, personal information of...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not in release Not affected Not affected Vulnerable Vulnerable
Show less packages

CVE-2019-9753

Medium priority
Not affected

An issue was discovered in Open Ticket Request System (OTRS) 7.x before 7.0.5. An attacker who is logged into OTRS as an agent or a customer user can use the search result screens to disclose information from invalid system...

1 affected packages

otrs2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
otrs2 Not affected Not affected
Show less packages