Oval Definition:oval:com.ubuntu.disco:def:202017670000000
Revision Date:2020-01-10Version:1
Title:CVE-2020-1767 on Ubuntu 19.04 (disco) - medium.
Description:Agent A is able to save a draft (i.e. for customer reply). Then Agent B can open the draft, change the text completely and send it in the name of Agent A. For the customer it will not be visible that the message was sent by another agent. This issue affects: ((OTRS)) Community Edition 6.0.x version 6.0.24 and prior versions. OTRS 7.0.x version 7.0.13 and prior versions.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2020-1767
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND otrs2 package in disco is affected and may need fixing.
  • BACK