Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-3551
Description:Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3.2.x before 3.2.7, and OTRS ITSM 3.0.x before 3.0.8, 3.1.x before 3.1.9, and 3.2.x before 3.2.5 does not properly restrict tickets, which allows remote attackers with a valid agent login to read restricted tickets via a crafted URL involving the ticket split mechanism.
Test IDs: 1.3.6.1.4.1.25623.1.0.803942   1.3.6.1.4.1.25623.1.0.702696  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-3551
http://advisories.mageia.org/MGASA-2013-0196.html
https://bugs.gentoo.org/show_bug.cgi?id=CVE-2013-3551




© 1998-2025 E-Soft Inc. All rights reserved.