Skip to main content

Vendor/product archive

otrs / faq CVEs

Beta · best-effort

4 CVEs tagged to otrs / faq1 Critical, 0 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2021-21438

Published Mar 22, 2021

Agents are able to see linked FAQ articles without permissions (defined in FAQ Category). This issue affects: FAQ version 6.0.29 and prior versions, OTRS version 7.0.24 and prior…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-2637

Published Feb 12, 2020

A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4 and 2.0.8 via changes, workorder items, and FAQ articles, wh…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-5843

Published Sep 17, 2016

Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to e…

CVSS 9.4 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1