Описание
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.3.x before 3.3.16, 4.0.x before 4.0.19, and 5.0.x before 5.0.14 allows remote attackers to inject arbitrary web script or HTML via a crafted attachment.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 5.0.14-1 |
| cosmic | not-affected | 5.0.14-1 |
| devel | DNE | |
| disco | not-affected | 5.0.14-1 |
| eoan | not-affected | 5.0.14-1 |
| esm-apps/bionic | not-affected | 5.0.14-1 |
| esm-apps/focal | not-affected | 5.0.14-1 |
| esm-apps/jammy | not-affected | 5.0.14-1 |
| esm-apps/xenial | needed |
Показывать по
4.3 Medium
CVSS2
6.1 Medium
CVSS3
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.3.x before 3.3.16, 4.0.x before 4.0.19, and 5.0.x before 5.0.14 allows remote attackers to inject arbitrary web script or HTML via a crafted attachment.
Cross-site scripting (XSS) vulnerability in Open Ticket Request System ...
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.3.x before 3.3.16, 4.0.x before 4.0.19, and 5.0.x before 5.0.14 allows remote attackers to inject arbitrary web script or HTML via a crafted attachment.
4.3 Medium
CVSS2
6.1 Medium
CVSS3