Faq
Otrs · 4 CVEs
CVE-2021-21438
MEDIUM
FAQ articles are shown to users without permission
Mar 22, 2021
CVE-2013-2637
MEDIUM
A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4…
Feb 12, 2020
CVE-2013-2625
MEDIUM
An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.…
Nov 27, 2019
CVE-2016-5843
CRITICAL
Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in O…
Sep 17, 2016
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-21438 | FAQ articles are shown to users without permission | MEDIUM | 0.63% | Mar 22, 2021 |
| CVE-2013-2637 | A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4 and 2.0.8 via changes, workorder items,… | MEDIUM | 4.30% | Feb 12, 2020 |
| CVE-2013-2625 | An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.… | MEDIUM | 1.29% | Nov 27, 2019 |
| CVE-2016-5843 | Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow r… | CRITICAL | 3.21% | Sep 17, 2016 |
Showing 1 to 4 of 4 CVEs