CVE-2020-1773
27.03.2020, 13:15
An attacker with the ability to generate session IDs or password reset tokens, either by being able to authenticate or by exploiting OSA-2020-09, may be able to predict other users session IDs, password reset tokens and automatically generated passwords. This issue affects ((OTRS)) Community Edition: 5.0.41 and prior versions, 6.0.26 and prior versions. OTRS; 7.0.15 and prior versions.Enginsight
Vendor | Product | Version |
---|---|---|
otrs | otrs | 5.0.0 ≤ 𝑥 ≤ 5.0.41 |
otrs | otrs | 6.0.0 ≤ 𝑥 ≤ 6.0.26 |
otrs | otrs | 7.0.0 ≤ 𝑥 ≤ 7.0.15 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References