OTRS是德国OTRS公司的一个应用软件。一个服务管理软件。 OTRS 8.0.35之前的8.0.X版本存在安全漏洞,该漏洞源于移动操作中的权限检查不正确,允许任何经过代理身份验证的攻击者在未经所需许可的情况下执行票证移动。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-38056 | 7.2 HIGH | Code execution via System Configuration |
| CVE-2023-38060 | 6.3 MEDIUM | Host header injection by attachments in web service |
| CVE-2023-38057 | 4.1 MEDIUM | XSS stored in survey answers |
No comments yet