Oval Definition:
oval:org.opensuse.security:def:201714635
Revision Date
:
2019-09-27
Version
:
1
Title
:
CVE-2017-14635
Description
:
In Open Ticket Request System (OTRS) 3.3.x before 3.3.18, 4.x before 4.0.25, and 5.x before 5.0.23, remote authenticated users can leverage statistics-write permissions to gain privileges via code injection.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2017-14635
Platform(s)
:
openSUSE Leap 42.2
openSUSE Leap 42.3
Product(s)
:
Definition Synopsis
openSUSE Leap 42.2 is installed
AND
Package Information
otrs-3.3.18-5.6.1 is installed
AND
otrs is signed with openSUSE key
OR
otrs-doc-3.3.18-5.6.1 is installed
AND
otrs-doc is signed with openSUSE key
OR
otrs-itsm-3.3.14-5.6.1 is installed
AND
otrs-itsm is signed with openSUSE key
Definition Synopsis
openSUSE Leap 42.3 is installed
AND
Package Information
otrs-3.3.18-9 is installed
AND
otrs is signed with openSUSE key
OR
otrs-doc-3.3.18-9 is installed
AND
otrs-doc is signed with openSUSE key
OR
otrs-itsm-3.3.14-9 is installed
AND
otrs-itsm is signed with openSUSE key
BACK