vulnerability
Ubuntu: (Multiple Advisories) (CVE-2023-41259): Request Tracker vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:N/AC:L/Au:N/C:C/I:N/A:N) | Nov 3, 2023 | Dec 5, 2023 | Aug 20, 2025 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:N)
Published
Nov 3, 2023
Added
Dec 5, 2023
Modified
Aug 20, 2025
Description
Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Disclosure via fake or spoofed RT email headers in an email message or a mail-gateway REST API call.
Solutions
ubuntu-pro-upgrade-request-tracker4ubuntu-pro-upgrade-request-tracker5ubuntu-pro-upgrade-rt4-apache2ubuntu-pro-upgrade-rt4-clientsubuntu-pro-upgrade-rt4-db-mysqlubuntu-pro-upgrade-rt4-db-postgresqlubuntu-pro-upgrade-rt4-db-sqliteubuntu-pro-upgrade-rt4-fcgiubuntu-pro-upgrade-rt4-standaloneubuntu-pro-upgrade-rt5-fcgiubuntu-pro-upgrade-rt5-standalone
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.