webscript.pl in Open Ticket Request System (OTRS) 2.3.4 and earlier allows remote attackers to execute arbitrary commands via unspecified vectors, related to a "command injection vulnerability."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-03-11 09:55
Updated : 2011-08-25 21:00
NVD link : CVE-2011-0456
Mitre link : CVE-2011-0456
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
otrs
- otrs