Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm8f-ghm9-8g26

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5.0.31, and 6.0.x before 6.0.13 allows an authenticated user to delete files via a modified submission form because upload caching is mishandled.

Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5.0.31, and 6.0.x before 6.0.13 allows an authenticated user to delete files via a modified submission form because upload caching is mishandled.

EPSS

Процентиль: 32%
0.00126
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-425

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 7 лет назад

Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5.0.31, and 6.0.x before 6.0.13 allows an authenticated user to delete files via a modified submission form because upload caching is mishandled.

CVSS3: 6.5
nvd
около 7 лет назад

Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5.0.31, and 6.0.x before 6.0.13 allows an authenticated user to delete files via a modified submission form because upload caching is mishandled.

CVSS3: 6.5
debian
около 7 лет назад

Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5. ...

suse-cvrf
около 7 лет назад

Security update for otrs

EPSS

Процентиль: 32%
0.00126
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-425