Vulnerabilities (CVE)

Filtered by vendor Otrs Subscribe
Filtered by product Iphonehandle
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-2385 1 Otrs 2 Iphonehandle, Otrs 2023-12-10 6.5 MEDIUM N/A
The iPhoneHandle package 0.9.x before 0.9.7 and 1.0.x before 1.0.3 in Open Ticket Request System (OTRS) does not properly restrict use of the iPhoneHandle interface, which allows remote authenticated users to gain privileges, and consequently read or modify OTRS core objects, via unspecified vectors.