OTRS AG
CVE Severity Distribution (All Time)
Timeline Overview
Recent CVEs
View allPasswords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations regarding the authentication sou…
Improper Neutralization of Input done by an attacker with admin privileges ('Cross-site Scripting') in Process Management modules of OTRS and ((OTRS)…
Improper Neutralization of Input done by an attacker with admin privileges ('Cross-site Scripting') in OTRS (System Configuration modules) and ((OTR…
An incorrect privilege assignment vulnerability in the inline editing functionality of OTRS can lead to privilege escalation. This flaw allows an age…
Improper filtering of fields when using the export function in the ticket overview of the external interface in OTRS could allow an authorized user t…