ZeroHour

CVE-2022-39049

CVSS 3.1
4.8 medium
EPSS
<1%p49
Published
()
Modified
Description

An attacker who is logged into OTRS as an admin user may manipulate the URL to cause execution of JavaScript in the context of OTRS.

Vendors
otrs
Products
otrs
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.