First published: Mon Jun 28 2021(Updated: )
Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows remote attackers to obtain sensitive information via the Ticket Article detail view.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zammad Zammad | >=1.0.0<=4.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-35301 is medium with a CVSS score of 5.3.
CVE-2021-35301 affects Zammad versions 1.0.x up to 4.0.0.
The vulnerability in Zammad is an incorrect access control issue.
Remote attackers can exploit CVE-2021-35301 to obtain sensitive information via the Ticket Article detail view.
Yes, there is a solution available for CVE-2021-35301. Refer to the advisory provided by Zammad for more details.