Описание
Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2 allows remote attackers to obtain sensitive information about cross-site request forgery (CSRF) verification tokens via a crafted URL.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 4.4.1-4 |
| bionic | not-affected | 4.4.1-4 |
| cosmic | not-affected | 4.4.1-4 |
| devel | not-affected | 4.4.1-4 |
| disco | not-affected | 4.4.1-4 |
| eoan | not-affected | 4.4.1-4 |
| esm-apps/bionic | not-affected | 4.4.1-4 |
| esm-apps/focal | not-affected | 4.4.1-4 |
| esm-apps/jammy | not-affected | 4.4.1-4 |
| esm-apps/noble | not-affected | 4.4.1-4 |
Показывать по
Ссылки на источники
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2 allows remote attackers to obtain sensitive information about cross-site request forgery (CSRF) verification tokens via a crafted URL.
Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x ...
Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2 allows remote attackers to obtain sensitive information about cross-site request forgery (CSRF) verification tokens via a crafted URL.
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3