Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vcxp-cq7g-77m2

Опубликовано: 08 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.

Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 2.4
ubuntu
почти 4 года назад

Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.

CVSS3: 2.4
nvd
почти 4 года назад

Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.

EPSS

Процентиль: 43%
0.00209
Низкий

Дефекты

CWE-200