Debian: CVE-2017-17476: otrs2 -- security update
|7||(AV:N/AC:M/Au:N/C:P/I:P/A:P)||December 20, 2017||December 21, 2017||January 17, 2018|
Open Ticket Request System (OTRS) 4.0.x before 4.0.28, 5.0.x before 5.0.26, and 6.0.x before 6.0.3, when cookie support is disabled, might allow remote attackers to hijack web sessions and consequently gain privileges via a crafted email.
Free Nexpose Download
Discover, prioritize, and remediate security risks today!