Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-10198

Опубликовано: 06 июн. 2018
Источник: debian
EPSS Низкий

Описание

An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket overview screen to disclose internal article information of their customer tickets.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
otrs2fixed6.0.7-1package
otrs2not-affectedstretchpackage
otrs2not-affectedjessiepackage

Примечания

  • https://github.com/OTRS/otrs/commit/9f5f09e4eef283c2f38c003ba0685b77234750d1

  • https://community.otrs.com/security-advisory-2018-01-security-update-for-otrs-framework

EPSS

Процентиль: 45%
0.00226
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 7 лет назад

An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket overview screen to disclose internal article information of their customer tickets.

CVSS3: 4.3
nvd
больше 7 лет назад

An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket overview screen to disclose internal article information of their customer tickets.

CVSS3: 4.3
github
больше 3 лет назад

An issue was discovered in OTRS 6.0.x before 6.0.7. An attacker who is logged into OTRS as a customer can use the ticket overview screen to disclose internal article information of their customer tickets.

EPSS

Процентиль: 45%
0.00226
Низкий