OTRS是德国 (OTRS)公司的一个应用软件。一个服务管理软件。 OTRS存在信息泄露漏洞,该漏洞源于软件如果包含的文件夹没有被隐藏,那么生成的支持包会包含私有的S/MIME和PGP密钥。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OTRS AG | ((OTRS)) Community Edition | 6.0.1 ~ 6.0.x* | - |
|
| OTRS AG | OTRS | 7.0.x ~ 7.0.28 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-36094 | 5.7 MEDIUM | XSS attack in appointment edit popup screen |
| CVE-2021-36095 | 5.3 MEDIUM | User enumeration issue using "lost password" feature |
| CVE-2021-36093 | 5.3 MEDIUM | DoS attack using PostMaster filters |
No comments yet