Back

MEDIUM

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x before 6.0.12

Published Apr 15, 2023

Description

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x before 6.0.12. An attacker could send an e-mail message with a malicious link to an OTRS system or an agent. If a logged-in agent opens this link, it could cause the execution of JavaScript in the context of OTRS.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 15, 2023
Updated Feb 6, 2025
Reserved Oct 2, 2018
CISA Vulnrichment
Updated Feb 6, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a