Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-11563

Опубликовано: 08 июл. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.9
CVSS3: 4.6

Описание

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the context of the OTRS customer panel application.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
cosmic

not-affected

6.0.11-1
devel

DNE

disco

not-affected

eoan

not-affected

esm-apps/bionic

needed

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

Показывать по

EPSS

Процентиль: 53%
0.00305
Низкий

4.9 Medium

CVSS2

4.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.6
nvd
больше 6 лет назад

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the context of the OTRS customer panel application.

CVSS3: 4.6
debian
больше 6 лет назад

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x thr ...

CVSS3: 4.6
github
больше 3 лет назад

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the context of the OTRS customer panel application.

EPSS

Процентиль: 53%
0.00305
Низкий

4.9 Medium

CVSS2

4.6 Medium

CVSS3