CVE-2018-19142: XSS
Published Nov 11, 2018
·Updated
Open Ticket Request System (OTRS) 6.0.x before 6.0.13 allows an admin to conduct an XSS attack via a modified URL.
Affected Software
1 affected component
OTRS Open Ticket Request System>=6.0.0<6.0.13
Event History
Nov 11, 2018
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-19142?
CVE-2018-19142 is classified as a medium severity vulnerability due to the potential for an XSS attack.
2
How do I fix CVE-2018-19142?
To fix CVE-2018-19142, upgrade OTRS to version 6.0.13 or later.
3
Who is affected by CVE-2018-19142?
CVE-2018-19142 affects all versions of OTRS 6.0.x prior to 6.0.13.
4
What type of attack is associated with CVE-2018-19142?
CVE-2018-19142 is associated with an XSS (Cross-Site Scripting) attack.
5
Can an admin exploit CVE-2018-19142?
Yes, an admin can exploit CVE-2018-19142 by crafting a modified URL.