LWN.net Logo

request-tracker: multiple vulnerabilities

Package(s):request-tracker CVE #(s):CVE-2012-4733 CVE-2013-3368 CVE-2013-3369 CVE-2013-3370 CVE-2013-3371 CVE-2013-3372 CVE-2013-3373 CVE-2013-3374
Created:May 23, 2013 Updated:May 30, 2013
Description: The request-tracker trouble ticket system suffers from a number of vulnerabilities that can be exploited for authentication bypass, file overwrite, cross-site scripting, HTTP header injection, session hijacking, and "negative side effects."
Alerts:
Debian DSA-2671-1 2013-05-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds