Описание
In Zammad before 3.3.1, a Customer has ticket access that should only be available to an Agent (e.g., read internal data, split, or merge).
Ссылки
- PatchThird Party Advisory
- Vendor Advisory
- PatchThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.3.1 (исключая)
cpe:2.3:a:zammad:zammad:*:*:*:*:*:*:*:*
EPSS
Процентиль: 35%
0.00144
Низкий
5.4 Medium
CVSS3
5.5 Medium
CVSS2
Дефекты
CWE-862
Связанные уязвимости
CVSS3: 5.4
debian
больше 5 лет назад
In Zammad before 3.3.1, a Customer has ticket access that should only ...
github
больше 3 лет назад
In Zammad before 3.3.1, a Customer has ticket access that should only be available to an Agent (e.g., read internal data, split, or merge).
EPSS
Процентиль: 35%
0.00144
Низкий
5.4 Medium
CVSS3
5.5 Medium
CVSS2
Дефекты
CWE-862