Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款OTRS产品安全漏洞
Vulnerability Description
OTRS ITSM是德国OTRS集团的一套IT服务管理组织的基础解决方案。该方案以ITIL最佳实践为基础,提供请求和故障管理、问题管理、变更管理和发布管理的管理工具。 多款OTRS产品中存在安全漏洞。该漏洞源于对象链接机制中存在错误。攻击者可利用该漏洞绕过某些安全限制,进而实施脚本注入攻击。以下产品和版本中存在漏洞:OTRS Help Desk 3.2.4之前版本,3.1.14之前版本,3.0.19之前版本;OTRS ITSM 3.2.3之前版本,3.1.8之前版本,3.0.7之前版本;OTRS FAQ模
CVSS Information
N/A
Vulnerability Type
N/A