Oval Definition:oval:org.opensuse.security:def:20134717
Revision Date:2022-06-30Version:1
Title:CVE-2013-4717
Description:

Multiple SQL injection vulnerabilities in Open Ticket Request System (OTRS) Help Desk 3.0.x before 3.0.22, 3.1.x before 3.1.18, and 3.2.x before 3.2.9 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors related to Kernel/Output/HTML/PreferencesCustomQueue.pm, Kernel/System/CustomerCompany.pm, Kernel/System/Ticket/IndexAccelerator/RuntimeDB.pm, Kernel/System/Ticket/IndexAccelerator/StaticDB.pm, and Kernel/System/TicketSearch.pm.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-4717
Mitre CVE-2013-4717
SUSE CVE-2013-4717
openSUSE-SU-2013:1338-1
Platform(s):openSUSE 12.2 Update
openSUSE 12.3 Update
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • otrs-3.1.18-26.5.1 is installed
  • OR otrs-doc-3.1.18-26.5.1 is installed
  • OR otrs-itsm-3.1.10-26.5.1 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • otrs-3.3.16-37.1 is installed
  • OR otrs-doc-3.3.16-37.1 is installed
  • OR otrs-itsm-3.3.14-37.1 is installed
  • BACK