Debian: CVE-2017-17476: otrs2 -- security update
|7||(AV:N/AC:M/Au:N/C:P/I:P/A:P)||December 19, 2017||December 20, 2017||January 16, 2018|
Open Ticket Request System (OTRS) 4.0.x before 4.0.28, 5.0.x before 5.0.26, and 6.0.x before 6.0.3, when cookie support is disabled, might allow remote attackers to hijack web sessions and consequently gain privileges via a crafted email.
Free Nexpose Download
Discover, prioritize, and remediate security risks today!