First published: Sun Nov 11 2018(Updated: )
Open Ticket Request System (OTRS) 6.0.x before 6.0.13 allows an admin to conduct an XSS attack via a modified URL.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OTRS Open Ticket Request System | >=6.0.0<6.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19142 is classified as a medium severity vulnerability due to the potential for an XSS attack.
To fix CVE-2018-19142, upgrade OTRS to version 6.0.13 or later.
CVE-2018-19142 affects all versions of OTRS 6.0.x prior to 6.0.13.
CVE-2018-19142 is associated with an XSS (Cross-Site Scripting) attack.
Yes, an admin can exploit CVE-2018-19142 by crafting a modified URL.