Oval Definition:oval:com.ubuntu.xenial:def:201416940000000
Revision Date:2014-02-04Version:1
Title:CVE-2014-1694 on Ubuntu 16.04 LTS (xenial) - medium.
Description:Multiple cross-site request forgery (CSRF) vulnerabilities in (1) CustomerPreferences.pm, (2) CustomerTicketMessage.pm, (3) CustomerTicketProcess.pm, and (4) CustomerTicketZoom.pm in Kernel/Modules/ in Open Ticket Request System (OTRS) 3.1.x before 3.1.19, 3.2.x before 3.2.14, and 3.3.x before 3.3.4 allow remote attackers to hijack the authentication of arbitrary users for requests that (5) create tickets or (6) send follow-ups to existing tickets.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-1694
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND otrs2 package in xenial, is related to the CVE in some way and has been fixed (note: '3.3.5-1').
  • BACK