Page 2 of 11 results (0.001 seconds)

CVSS: 8.1EPSS: 1%CPEs: 31EXPL: 0

19 Dec 2014 — The GenericInterface in OTRS Help Desk 3.2.x before 3.2.17, 3.3.x before 3.3.11, and 4.0.x before 4.0.3 allows remote authenticated users to access and modify arbitrary tickets via unspecified vectors. GenericInterface en OTRS Help Desk 3.2.x anterior a 3.2.17, 3.3.x anterior a 3.3.11 y 4.0.x anterior a 4.0.3 permiten a usuarios remotos autenticados acceder y modificar tickets arbitrarios a través de vectores sin especificar. Thorsten Eckel of Znuny GMBH and Remo Staeuble of InfoGuard discovered a privilege... • http://advisories.mageia.org/MGASA-2015-0031.html • CWE-264: Permissions, Privileges, and Access Controls •