CVE-2008-7283: Medium severity otrs vulnerability
Open Ticket Request System (OTRS) before 2.2.6, when customer group support is enabled, allows remote authenticated users to bypass intended access restrictions and perform web-interface updates to tickets by leveraging queue read permissions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7283?
The severity of CVE-2008-7283 is considered medium as it allows authenticated users to bypass access restrictions.
How do I fix CVE-2008-7283?
To fix CVE-2008-7283, you should upgrade your OTRS installation to version 2.2.6 or later.
Which versions of OTRS are affected by CVE-2008-7283?
CVE-2008-7283 affects OTRS versions before 2.2.6, including all 2.2.x versions down to the initial releases.
What type of vulnerability is CVE-2008-7283?
CVE-2008-7283 is a web application vulnerability that allows unauthorized changes to ticket updates.
Who can exploit CVE-2008-7283?
CVE-2008-7283 can be exploited by remote authenticated users who leverage queue read permissions.