CVE-2019-12497

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, Community Edition 6.0.x through 6.0.19, and Community Edition 5.0.x through 5.0.36. In the customer or external frontend, personal information of agents (e.g., Name and mail address) can be disclosed in external notes.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-06-17 17:15

Updated : 2024-02-04 20:20


NVD link : CVE-2019-12497

Mitre link : CVE-2019-12497

CVE.ORG link : CVE-2019-12497


JSON object : View

Products Affected

debian

  • debian_linux

otrs

  • otrs
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor