Information Disclosure
Published Mar 27, 2020
7.5
HIGHCVSS 3.1
EPSS 1.60%
Description
It's possible to craft Lost Password requests with wildcards in the Token value, which allows attacker to retrieve valid Token(s), generated by users which already requested new passwords. This issue affects: ((OTRS)) Community Edition 5.0.41 and prior versions, 6.0.26 and prior versions. OTRS: 7.0.15 and prior versions.
Affected products
-
Affected
- ≥ 7.0.x, ≤ 7.0.15
-
Affected
- ≥ 5.0.x, ≤ 5.0.41
- ≥ 6.0.x, ≤ 6.0.26
Configuration 1
Configuration 2
- 15.0
- 15.0
- 15.0
- 15.1
- 15.2
Configuration 3
- 8.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Upgrade to OTRS 7.0.16, ((OTRS)) Community Edition 6.0.27, 5.0.42
Patch for ((OTRS)) Community Edition 6: https://github.com/OTRS/otrs/commit/c0255365d5c455272b2b9e7bb1f6c96c3fce441b Patch for ((OTRS)) Community Edition 5: https://github.com/OTRS/otrs/commit/96cc7826d6ce260204ff629fc968edd2787b7f6b
References (7)
- http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00038.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00066.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00077.html vendor-advisoryMailing ListThird Party Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-12598 Advisory
- https://lists.debian.org/debian-lts-announce/2020/05/msg00000.html mailing-listMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2023/08/msg00040.html mailing-list
- https://otrs.com/release-notes/otrs-security-advisory-2020-09/ PatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00038.html | vendor-advisoryMailing ListThird Party Advisory | |
| http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00066.html | vendor-advisoryMailing ListThird Party Advisory | |
| http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00077.html | vendor-advisoryMailing ListThird Party Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-12598 | Advisory | |
| https://lists.debian.org/debian-lts-announce/2020/05/msg00000.html | mailing-listMailing ListThird Party Advisory | |
| https://lists.debian.org/debian-lts-announce/2023/08/msg00040.html | mailing-list | |
| https://otrs.com/release-notes/otrs-security-advisory-2020-09/ | PatchVendor Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data