Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sebastian Renker

#48029of 53,632
5.3Total CVSS
Vulnerabilities · 1
PT-2020-15042
5.3
2020-01-10
Otrs · Otrs Community Edition · CVE-2020-1765
**Name of the Vulnerable Software and Affected Versions** OTRS Community Edition versions 5.0.0 through 5.0.39 OTRS Community Edition versions 6.0.0 through 6.0.24 OTRS Community Edition versions 7.0.0 through 7.0.13 **Description** The issue allows for the spoofing of the 'from' fields in several screens, including AgentTicketCompose, AgentTicketForward, AgentTicketBounce, and AgentTicketEmailOutbound, due to improper control of parameters. **Recommendations** For versions 5.0.0 through 5.0.39, update to a version newer than 5.0.39 to resolve the issue. For versions 6.0.0 through 6.0.24, update to a version newer than 6.0.24 to resolve the issue. For versions 7.0.0 through 7.0.13, update to a version newer than 7.0.13 to resolve the issue.