CVE-2023-29867
02.05.2023, 16:15
Zammad 5.3.x (Fixed 5.4.0) is vulnerable to Incorrect Access Control. An authenticated attacker could gain information about linked accounts of users involved in their tickets using the Zammad API.Enginsight
Vendor | Product | Version |
---|---|---|
zammad | zammad | 5.3.0 ≤ 𝑥 < 5.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration