Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-6127
Description:Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2, when the AlwaysDownloadAttachments config setting is not in use, allows remote attackers to inject arbitrary web script or HTML via a file upload with an unspecified content type.
Test IDs: 1.3.6.1.4.1.25623.1.0.703882   1.3.6.1.4.1.25623.1.0.890987  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-6127
BugTraq ID: 99375
http://www.securityfocus.com/bid/99375
Debian Security Information: DSA-3882 (Google Search)
http://www.debian.org/security/2017/dsa-3882




© 1998-2025 E-Soft Inc. All rights reserved.