← Back

CVE-2013-2625

nvd nist
Published: Nov 27, 2019Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: NVD

Description

An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified

Affected (14)

3 products
Faq
Otrs Help Desk
Otrs Itsm
1 product
Debian Linux
1 product
Opensuse
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Otrs
From 2.0.0 to 2.0.8
From 2.1.0 to 2.1.4
From 2.2.0 to 2.2.3
Otrs
After 3.2.0 to 3.2.4
From 3.0.0 to 3.0.19
From 3.1.0 to 3.1.14
Otrs
From 3.0.0 to 3.0.7
From 3.1.0 to 3.1.8
From 3.2.0 to 3.2.3
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 8.0
Version 9.0
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 12.2
Version 12.3

References (10)

Source: cve@mitre.org
Broken LinkThird Party Advisory
Source: cve@mitre.org
Release NotesThird Party Advisory
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.