CVE-2013-2625: Medium severity otrs faq vulnerability
An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2625?
The severity of CVE-2013-2625 is medium with a score of 6.5.
What is the affected software for CVE-2013-2625?
The affected software for CVE-2013-2625 includes OTRS Help Desk before versions 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before versions 3.2.3, 3.1.8, and 3.0.7, and FAQ before versions 2.2.3, 2.1.4, and 2.0.8.
How does the Access Bypass issue manifest in CVE-2013-2625?
The Access Bypass issue in CVE-2013-2625 occurs because access rights by the object linking mechanism are not verified.
Which operating systems are affected by CVE-2013-2625?
CVE-2013-2625 affects Debian Linux versions 8.0, 9.0, and 10.0, as well as openSUSE versions 12.2 and 12.3.
Where can I find more information about CVE-2013-2625?
You can find more information about CVE-2013-2625 in the references provided: http://web.archive.org/web/20130716120019/, http://www.otrs.com:80/en/open-source/community-news/security-advisories/security-advisory-2013-01/, and https://security-tracker.debian.org/tracker/CVE-2013-2625.