Open Ticket Request System (OTRS) ITSM 3.2.5

CPE Details

Open Ticket Request System (OTRS) ITSM 3.2.5
3.2.5
2020-03-06
14h56 +00:00
2020-03-06
14h56 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:otrs:otrs_itsm:3.2.5:*:*:*:*:*:*:*

Informations

Vendor

otrs

Product

otrs_itsm

Version

3.2.5

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-36100 2022-03-21 09h15 +00:00 Specially crafted string in OTRS system configuration can allow the execution of any system command.
8.8
High
CVE-2013-4718 2021-08-09 16h03 +00:00 Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) ITSM 3.0.x before 3.0.9, 3.1.x before 3.1.10, and 3.2.x before 3.2.7 allows remote authenticated users to inject arbitrary web script or HTML via an ITSM ConfigItem search.
5.4
Medium
CVE-2013-4717 2021-08-09 16h03 +00:00 Multiple SQL injection vulnerabilities in Open Ticket Request System (OTRS) Help Desk 3.0.x before 3.0.22, 3.1.x before 3.1.18, and 3.2.x before 3.2.9 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to Kernel/Output/HTML/PreferencesCustomQueue.pm, Kernel/System/CustomerCompany.pm, Kernel/System/Ticket/IndexAccelerator/RuntimeDB.pm, Kernel/System/Ticket/IndexAccelerator/StaticDB.pm, and Kernel/System/TicketSearch.pm.
8.8
High