Oval Definition:oval:org.opensuse.security:def:20124751
Revision Date:2022-06-30Version:1
Title:CVE-2012-4751
Description:

Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.15, 3.0.x before 3.0.17, and 3.1.x before 3.1.11 allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with whitespace before a javascript: URL in the SRC attribute of an element, as demonstrated by an IFRAME element.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-4751
Mitre CVE-2012-4751
SUSE CVE-2012-4751
openSUSE-SU-2013:0145-1
Platform(s):openSUSE 12.1
openSUSE 12.1 Update
openSUSE 12.2 Update
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • otrs-3.1.11-20.12.1 is installed
  • OR otrs-doc-3.1.11-20.12.1 is installed
  • OR otrs-itsm-3.1.6-20.12.1 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • otrs-3.3.16-37.1 is installed
  • OR otrs-doc-3.3.16-37.1 is installed
  • OR otrs-itsm-3.3.14-37.1 is installed
  • BACK