Open Ticket Request System (OTRS) OTRS ITSM 3.0.7

CPE Details

Open Ticket Request System (OTRS) OTRS ITSM 3.0.7
3.0.7
2020-01-16
12h25 +00:00
2020-01-16
12h25 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:otrs:otrs_itsm:3.0.7:*:*:*:*:*:*:*

Informations

Vendor

otrs

Product

otrs_itsm

Version

3.0.7

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-36100 2022-03-21 09h15 +00:00 Specially crafted string in OTRS system configuration can allow the execution of any system command.
8.8
Haute
CVE-2013-4718 2021-08-09 16h03 +00:00 Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) ITSM 3.0.x before 3.0.9, 3.1.x before 3.1.10, and 3.2.x before 3.2.7 allows remote authenticated users to inject arbitrary web script or HTML via an ITSM ConfigItem search.
5.4
Moyen
CVE-2013-4717 2021-08-09 16h03 +00:00 Multiple SQL injection vulnerabilities in Open Ticket Request System (OTRS) Help Desk 3.0.x before 3.0.22, 3.1.x before 3.1.18, and 3.2.x before 3.2.9 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to Kernel/Output/HTML/PreferencesCustomQueue.pm, Kernel/System/CustomerCompany.pm, Kernel/System/Ticket/IndexAccelerator/RuntimeDB.pm, Kernel/System/Ticket/IndexAccelerator/StaticDB.pm, and Kernel/System/TicketSearch.pm.
8.8
Haute
CVE-2013-3551 2020-02-21 14h35 +00:00 Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3.2.x before 3.2.7, and OTRS ITSM 3.0.x before 3.0.8, 3.1.x before 3.1.9, and 3.2.x before 3.2.5 does not properly restrict tickets, which allows remote attackers with a valid agent login to read restricted tickets via a crafted URL involving the ticket split mechanism.
6.5
Moyen