CVE-2021-36096
06.09.2021, 15:15
Generated Support Bundles contains private S/MIME and PGP keys if containing folder is not hidden. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.28 and prior versions; 8.0.x version 8.0.15 and prior versions.Enginsight
Vendor | Product | Version |
---|---|---|
otrs | otrs | 6.0.1 ≤ |
otrs | otrs | 7.0.0 ≤ 𝑥 < 7.0.29 |
otrs | otrs | 8.0.0 ≤ 𝑥 < 8.0.16 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
- CWE-200 - Exposure of Sensitive Information to an Unauthorized ActorThe product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
- CWE-312 - Cleartext Storage of Sensitive InformationThe product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.