CVE-2024-43446 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An improper privilege management vulnerability in OTRS Generic Interface module allows change of the Ticket status even if the user only has ro permissions. T…
Low CVSS: 3.5

CVE-2024-43446

An improper privilege management vulnerability in OTRS Generic Interface module allows change of the Ticket status even if the user only has ro permissions.

This issue affects:

* OTRS 7.0.X

* OTRS 8.0.X
* OTRS 2023.X
* OTRS 2024.X

* ((OTRS)) Community Edition: 6.0.x

Products based on the ((OTRS)) Community Edition also very likely to be affected
Vendor
-
Product
-
CWE
CWE-269
Yayın Tarihi
2025-01-27 06:15:24
Güncelleme
2025-01-27 06:15:24
Source Identifier
security@otrs.com
KEV Date Added
-

Kategoriler

Referanslar