First published: Thu Jul 14 2022(Updated: )
Best Practical Request Tracker (RT) before 5.0.3 has an Open Redirect via a ticket search.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bestpractical Request Tracker | <5.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25803 is a vulnerability in Best Practical Request Tracker (RT) before 5.0.3 that allows an attacker to perform an open redirect via a ticket search.
CVE-2022-25803 has a severity rating of 6.1 (medium).
CVE-2022-25803 allows an attacker to manipulate the URL in a ticket search to redirect users to malicious websites.
The affected version of Best Practical Request Tracker is versions prior to 5.0.3.
To fix CVE-2022-25803, users should upgrade to version 5.0.3 or higher of Best Practical Request Tracker.