|
|
| |
|
| |
otrs2: SQL injection vulnerability
| Package(s): | otrs2 |
CVE #(s): | CVE-2010-0438
|
| Created: | February 11, 2010 |
Updated: | August 2, 2010 |
| Description: |
From the Debian alert:
It was discovered that otrs2, the Open Ticket Request System, does not
properly sanitise input data that is used on SQL queries, which might be
used to inject arbitrary SQL to, for example, escalate privileges on a
system that uses otrs2. |
| Alerts: |
|
( Log in to post comments)
|
|
|