An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.7, Community Edition 6.0.x through 6.0.19, and Community Edition 5.0.x through 5.0.36. An attacker could send a malicious email to an OTRS system. If a logged-in agent user quotes it, the email could cause the browser to load external image resources.
References
Configurations
History
No history.
Information
Published : 2019-06-17 18:15
Updated : 2024-11-21 04:22
NVD link : CVE-2019-12248
Mitre link : CVE-2019-12248
CVE.ORG link : CVE-2019-12248
JSON object : View
Products Affected
otrs
- otrs
debian
- debian_linux
CWE