Otrs Vulnerabilities

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Type

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Product

OTRS Community Edition20
OTRS Time Accounting2
OTRS Open Ticket Request System2
OTRS OTRSTicketForms2
OTRS OTRSCIsInCustomerFrontend2

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Remediation

Official Fix14
Temporary Fix0
Workaround0
Unavailable0
Not Defined16

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploitability

High0
Functional0
Proof-of-Concept2
Unproven0
Not Defined28

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Access Vector

Not Defined0
Physical0
Local2
Adjacent4
Network24

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Authentication

Not Defined0
High10
Low16
None4

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

User Interaction

Not Defined0
Required24
None6

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

C3BM Index

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CVSSv3 Base

≤10
≤20
≤34
≤414
≤56
≤62
≤70
≤84
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CVSSv3 Temp

≤10
≤20
≤34
≤414
≤56
≤62
≤70
≤84
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

VulDB

≤10
≤20
≤38
≤410
≤54
≤64
≤74
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

NVD

≤10
≤20
≤32
≤44
≤56
≤60
≤70
≤82
≤90
≤102

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

CNA

≤10
≤20
≤32
≤44
≤50
≤60
≤74
≤82
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vendor

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Research

≤10
≤20
≤30
≤40
≤50
≤60
≤70
≤80
≤90
≤100

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit 0-day

<1k16
<2k14
<5k0
<10k0
<25k0
<50k0
<100k0
≥100k0

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit Today

<1k30
<2k0
<5k0
<10k0
<25k0
<50k0
<100k0
≥100k0

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Exploit Market Volume

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

🔴 CTI Activities

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Affected Products (10): Community Edition (22), FAQ (1), Help Desk (1), Help Desk before (1), ITSM (1), OTRSCIsInCustomerFrontend (1), OTRSTicketForms (1), Open Ticket Request System (2), Survey (1), Time Accounting (1)

PublishedBaseTempVulnerabilityProdExpRemEPSSCTICVE
03/20/20235.25.1OTRS Community Edition Ticket Action Module cross site scriptingService Management SoftwareNot DefinedOfficial Fix0.000630.04CVE-2023-1248
03/20/20237.27.1OTRS Community Edition ACL Module code injectionService Management SoftwareNot DefinedOfficial Fix0.000420.00CVE-2023-1250
12/19/20227.57.4OTRS Community Edition TicketSearch Webservice sql injectionService Management SoftwareNot DefinedOfficial Fix0.001320.05CVE-2022-4427
09/06/20213.53.5OTRS Community Edition Appointment Edit Screen cross site scriptingService Management SoftwareNot DefinedNot Defined0.000540.00CVE-2021-36094
09/06/20212.72.7OTRS Community Edition Folder information disclosureService Management SoftwareNot DefinedNot Defined0.000650.00CVE-2021-36096
09/06/20213.73.7OTRS Community Edition Lost Password information disclosureService Management SoftwareNot DefinedNot Defined0.000730.00CVE-2021-36095
09/06/20215.35.3OTRS Community Edition Email denial of serviceService Management SoftwareNot DefinedNot Defined0.000850.00CVE-2021-36093
08/10/20213.53.4OTRS Open Ticket Request System cross site scriptingTicket Tracking SoftwareNot DefinedOfficial Fix0.000660.04CVE-2013-4718
08/10/20216.36.0OTRS Open Ticket Request System PreferencesCustomQueue.pm sql injectionTicket Tracking SoftwareNot DefinedOfficial Fix0.001100.00CVE-2013-4717
07/26/20214.34.3OTRS Community Edition Email cross site scriptingService Management SoftwareNot DefinedNot Defined0.000780.00CVE-2021-36092

20 more entries are not shown

Do you want to use VulDB in your project?

Use the official API to access entries easily!