The external frontend system uses numerous background calls to the backend. Each background request is treated as user activity so the SessionMaxIdleTime will not be reached. This issue affects: OTRS 7.0.x version 7.0.14 and prior versions.
References
Link | Resource |
---|---|
https://otrs.com/release-notes/otrs-security-advisory-2020-04/ | Vendor Advisory |
Configurations
Information
Published : 2020-02-07 08:15
Updated : 2020-02-11 08:16
NVD link : CVE-2020-1768
Mitre link : CVE-2020-1768
JSON object : View
CWE
CWE-613
Insufficient Session Expiration
Products Affected
otrs
- otrs