CVE Published: 27/11/2023 |
CVE Updated: 15/10/2024 |
CVE Year: 2023 Source: OTRS |
Vendor: OTRS AG |
Product: OTRS Status : PUBLISHED
CVE-2023-6254 Description
A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text passwords which are send back to the client in the server response-
This issue affects OTRS: from 8.0.X through 8.0.37.
Metrics
CVSS Version: 3.1 |
Base Score: 8.1 HIGH Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N