Otrs Ag · Otrs · CVE-2021-36093
Name of the Vulnerable Software and Affected Versions:
OTRS AG (OTRS) Community Edition versions 6.0.1 and later
OTRS AG OTRS versions 7.0.28 and prior
OTRS AG OTRS versions 8.0.15 and prior
Description:
It's possible to create an email which can be stuck while being processed by PostMaster filters, causing a denial of service (DoS).
Recommendations:
For OTRS AG (OTRS) Community Edition versions 6.0.1 and later, consider updating to a version that is not affected by this issue.
For OTRS AG OTRS versions 7.0.28 and prior, consider updating to a version that is not affected by this issue.
For OTRS AG OTRS versions 8.0.15 and prior, consider updating to a version that is not affected by this issue.
As a temporary workaround, consider restricting the PostMaster filters to minimize the risk of exploitation.