Oval Definition:oval:org.opensuse.security:def:20133551
Revision Date:2022-06-30Version:1
Title:CVE-2013-3551
Description:

Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3.2.x before 3.2.7, and OTRS ITSM 3.0.x before 3.0.8, 3.1.x before 3.1.9, and 3.2.x before 3.2.5 does not properly restrict tickets, which allows remote attackers with a valid agent login to read restricted tickets via a crafted URL involving the ticket split mechanism.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-3551
Mitre CVE-2013-3551
SUSE CVE-2013-3551
openSUSE-SU-2013:1338-1
Platform(s):openSUSE 12.2 Update
openSUSE 12.3 Update
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • otrs-3.1.18-26.5.1 is installed
  • OR otrs-doc-3.1.18-26.5.1 is installed
  • OR otrs-itsm-3.1.10-26.5.1 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • otrs-3.3.16-37.1 is installed
  • OR otrs-doc-3.3.16-37.1 is installed
  • OR otrs-itsm-3.3.14-37.1 is installed
  • BACK