Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5gvf-qj79-739q

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affects: OTRS AG OTRSCIsInCustomerFrontend 7.0.x version 7.0.14 and prior versions.

Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affects: OTRS AG OTRSCIsInCustomerFrontend 7.0.x version 7.0.14 and prior versions.

EPSS

Процентиль: 30%
0.00112
Низкий

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 3.5
ubuntu
почти 5 лет назад

Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affects: OTRS AG OTRSCIsInCustomerFrontend 7.0.x version 7.0.14 and prior versions.

CVSS3: 3.5
nvd
почти 5 лет назад

Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affects: OTRS AG OTRSCIsInCustomerFrontend 7.0.x version 7.0.14 and prior versions.

EPSS

Процентиль: 30%
0.00112
Низкий

Дефекты

CWE-276