CVE-2017-15864
16.11.2017, 15:29
In the Agent Frontend in Open Ticket Request System (OTRS) 3.3.x through 3.3.18, with a crafted URL it is possible to gain information like database user and password.Enginsight
| Vendor | Product | Version |
|---|---|---|
| otrs | otrs | 3.3.0 ≤ 𝑥 ≤ 3.3.18 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References