CVE-2021-21436

Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affects: OTRS AG OTRSCIsInCustomerFrontend 7.0.x version 7.0.14 and prior versions.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:otrs:cis_in_customer_frontend:*:*:*:*:*:*:*:*

Information

Published : 2021-02-08 03:15

Updated : 2021-02-10 10:23


NVD link : CVE-2021-21436

Mitre link : CVE-2021-21436


JSON object : View

CWE
CWE-276

Incorrect Default Permissions

Advertisement

dedicated server usa

Products Affected

otrs

  • cis_in_customer_frontend