CVE Database
/

CVE-2011-2385

Back to search

CVE-2011-2385

Published: Jul 19, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

The iPhoneHandle package 0.9.x before 0.9.7 and 1.0.x before 1.0.3 in Open Ticket Request System (OTRS) does not properly restrict use of the iPhoneHandle interface, which allows remote authenticated users to gain privileges, and consequently read or modify OTRS core objects, via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

73885
vdb-entry
x_refsource_OSVDB
48678
vdb-entry
x_refsource_BID
45227
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now