CVE-2008-7276: Medium severity otrs vulnerability
Kernel/System/Web/Request.pm in Open Ticket Request System (OTRS) before 2.3.2 creates a directory under /tmp/ with 1274 permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations, related to incorrect interpretation of 0700 as a decimal value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7276?
CVE-2008-7276 is considered a medium severity vulnerability because it allows local users to bypass access restrictions.
How do I fix CVE-2008-7276?
To fix CVE-2008-7276, upgrade to OTRS version 2.3.2 or later, which addresses this vulnerability.
What versions of OTRS are affected by CVE-2008-7276?
CVE-2008-7276 affects OTRS versions prior to 2.3.2, including several beta and release versions up to 2.3.0.
What kind of impact can CVE-2008-7276 have on my system?
The impact of CVE-2008-7276 could allow unauthorized local users to gain access to sensitive information due to misconfigured permissions.
Is CVE-2008-7276 a remote or local vulnerability?
CVE-2008-7276 is classified as a local vulnerability, meaning it requires local access to the affected system to exploit.