First published: Mon Oct 17 2022(Updated: )
Article template contents with sensitive data could be accessed from agents without permissions.
Credit: security@otrs.com
Affected Software | Affected Version | How to fix |
---|---|---|
Otrs Otrs | >=8.0.0<8.0.26 |
Update to OTRS 8.0.26
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3501 is a vulnerability that allows unauthorized access to article template contents with sensitive data in OTRS.
CVE-2022-3501 has a severity score of 7.5, which is considered high.
OTRS version 8.0.0 to 8.0.26 is affected by CVE-2022-3501.
To fix CVE-2022-3501, you should update OTRS to a version beyond 8.0.26 or apply the necessary security patches provided by OTRS.
You can find more information about CVE-2022-3501 in the OTRS security advisory 2022-14: [OTRS Security Advisory 2022-14](https://otrs.com/release-notes/otrs-security-advisory-2022-14/)