Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vwfv-p8p3-m4r7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

When OTRS uses multiple backends for user authentication (with LDAP), agents are able to login even if the account is set to invalid. This issue affects OTRS; 8.0.9 and prior versions.

When OTRS uses multiple backends for user authentication (with LDAP), agents are able to login even if the account is set to invalid. This issue affects OTRS; 8.0.9 and prior versions.

EPSS

Процентиль: 46%
0.00233
Низкий

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 4.1
ubuntu
около 5 лет назад

When OTRS uses multiple backends for user authentication (with LDAP), agents are able to login even if the account is set to invalid. This issue affects OTRS; 8.0.9 and prior versions.

CVSS3: 4.1
nvd
около 5 лет назад

When OTRS uses multiple backends for user authentication (with LDAP), agents are able to login even if the account is set to invalid. This issue affects OTRS; 8.0.9 and prior versions.

CVSS3: 4.1
debian
около 5 лет назад

When OTRS uses multiple backends for user authentication (with LDAP), ...

EPSS

Процентиль: 46%
0.00233
Низкий

Дефекты

CWE-287