First published: Fri Nov 03 2023(Updated: )
Best Practical Request Tracker (RT) 5 before 5.0.5 allows Information Disclosure via a transaction search in the transaction query builder.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bestpractical Request Tracker | >=5.0.0<5.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability CVE-2023-45024 refers to an information disclosure issue in Best Practical Request Tracker (RT) 5 before version 5.0.5.
CVE-2023-45024 has a severity rating of 7.5, which is considered high.
The information disclosure in CVE-2023-45024 can be exploited by performing a transaction search in the transaction query builder of Best Practical Request Tracker (RT) 5.
Best Practical Request Tracker (RT) versions before 5.0.5 are affected by CVE-2023-45024.
To fix the information disclosure vulnerability in CVE-2023-45024, it is recommended to update to version 5.0.5 or later of Best Practical Request Tracker (RT).