Search

Find a vulnerability

Search criteria

    3 vulnerabilities found for otrs by otrs

    CVE-2024-43444 (GCVE-0-2024-43444)

    Vulnerability from cvelistv5 – Published: 2024-08-26 08:42 – Updated: 2024-08-29 07:36
    VLAI
    Title
    Passwords are written to Admin Log Module
    Summary
    Passwords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations regarding the authentication sources match and debugging for the authentication backend has been enabled. This issue affects: * OTRS from 7.0.X through 7.0.50 * OTRS 8.0.X * OTRS 2023.X * OTRS from 2024.X through 2024.5.X * ((OTRS)) Community Edition: 6.0.x Products based on the ((OTRS)) Community Edition also very likely to be affected
    SSVC
    Exploitation: none Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-08-26 13:57 UTC
    CWE
    • CWE-532 - Insertion of Sensitive Information into Log File
    Impacted products
    Vendor Product Version
    OTRS AG OTRS Affected: 7.0.x , ≤ 7.0.50 (Patch)
    Affected: 8.0.x
    Affected: 2023.x
    Affected: 2024.x , ≤ 2024.5.x (Patch)
    Create a notification for this product.
    OTRS AG ((OTRS)) Community Edition Affected: 6.0.x
    Create a notification for this product.
    otrs otrs Affected: 7.0.0 , ≤ 7.0.50 (custom)
    Affected: 8.0.0
    Affected: 2023.0
    Affected: 2024.0 , ≤ 2024.5.0 (custom)
        cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
    Create a notification for this product.
    otrs otrs Affected: 6.0.0
        cpe:2.3:a:otrs:otrs:*:*:*:*:community:*:*:*
    Create a notification for this product.
    Date Public
    2024-08-26 08:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "unaffected",
                "product": "otrs",
                "vendor": "otrs",
                "versions": [
                  {
                    "lessThanOrEqual": "7.0.50",
                    "status": "affected",
                    "version": "7.0.0",
                    "versionType": "custom"
                  },
                  {
                    "status": "affected",
                    "version": "8.0.0"
                  },
                  {
                    "status": "affected",
                    "version": "2023.0"
                  },
                  {
                    "lessThanOrEqual": "2024.5.0",
                    "status": "affected",
                    "version": "2024.0",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:otrs:otrs:*:*:*:*:community:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "otrs",
                "vendor": "otrs",
                "versions": [
                  {
                    "status": "affected",
                    "version": "6.0.0"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-43444",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-08-26T13:57:06.436622Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-08-26T14:01:52.566Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "affected",
              "modules": [
                "Log Module",
                "Agent Authentication",
                "Customer Authentication"
              ],
              "product": "OTRS",
              "vendor": "OTRS AG",
              "versions": [
                {
                  "lessThanOrEqual": "7.0.50",
                  "status": "affected",
                  "version": "7.0.x",
                  "versionType": "Patch"
                },
                {
                  "status": "affected",
                  "version": "8.0.x"
                },
                {
                  "status": "affected",
                  "version": "2023.x"
                },
                {
                  "lessThanOrEqual": "2024.5.x",
                  "status": "affected",
                  "version": "2024.x",
                  "versionType": "Patch"
                }
              ]
            },
            {
              "defaultStatus": "affected",
              "modules": [
                "Log Module",
                "Agent Authentication",
                "Customer Authentication"
              ],
              "product": "((OTRS)) Community Edition",
              "vendor": "OTRS AG",
              "versions": [
                {
                  "status": "affected",
                  "version": "6.0.x"
                }
              ]
            }
          ],
          "datePublic": "2024-08-26T08:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "\u003cdiv\u003ePasswords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations regarding the authentication sources match and debugging for the authentication backend has been enabled.\u003cbr\u003e\u003c/div\u003e\u003cdiv\u003e\u003cp\u003eThis issue affects: \u003c/p\u003e\u003cul\u003e\u003cli\u003eOTRS from 7.0.X through 7.0.50\u003c/li\u003e\u003cli\u003eOTRS 8.0.X\u003c/li\u003e\u003cli\u003eOTRS 2023.X\u003c/li\u003e\u003cli\u003eOTRS from 2024.X through 2024.5.X\u003c/li\u003e\u003cli\u003e((OTRS)) Community Edition: 6.0.x\u003cbr\u003e\u003c/li\u003e\u003c/ul\u003e\u003cdiv\u003eProducts based on the ((OTRS)) Community Edition also very likely to be affected\u003c/div\u003e\u003cbr\u003e\u003c/div\u003e"
                }
              ],
              "value": "Passwords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations regarding the authentication sources match and debugging for the authentication backend has been enabled.\n\nThis issue affects: \n\n  *  OTRS from 7.0.X through 7.0.50\n  *  OTRS 8.0.X\n  *  OTRS 2023.X\n  *  OTRS from 2024.X through 2024.5.X\n  *  ((OTRS)) Community Edition: 6.0.x\n\nProducts based on the ((OTRS)) Community Edition also very likely to be affected"
            }
          ],
          "impacts": [
            {
              "capecId": "CAPEC-545",
              "descriptions": [
                {
                  "lang": "en",
                  "value": "CAPEC-545 Pull Data from System Resources"
                }
              ]
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "NONE",
                "baseScore": 8.2,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "LOW",
                "privilegesRequired": "NONE",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-532",
                  "description": "CWE-532 Insertion of Sensitive Information into Log File",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-08-29T07:36:13.555Z",
            "orgId": "2e1bf29f-dc29-4ed8-830c-7b9348b6f0e8",
            "shortName": "OTRS"
          },
          "references": [
            {
              "url": "https://otrs.com/release-notes/otrs-security-advisory-2024-12/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "Update to OTRS 2024.6.x or OTRS 7.0.51\u003cbr\u003e"
                }
              ],
              "value": "Update to OTRS 2024.6.x or OTRS 7.0.51"
            }
          ],
          "source": {
            "advisory": "OSA-2024-12",
            "defect": [
              "Issue#2725",
              "Ticket#2024072442001041",
              "Ticket#2024072442000677"
            ],
            "discovery": "USER"
          },
          "title": "Passwords are written to Admin Log Module",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "2e1bf29f-dc29-4ed8-830c-7b9348b6f0e8",
        "assignerShortName": "OTRS",
        "cveId": "CVE-2024-43444",
        "datePublished": "2024-08-26T08:42:58.796Z",
        "dateReserved": "2024-08-13T13:38:47.973Z",
        "dateUpdated": "2024-08-29T07:36:13.555Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2024-23793 (GCVE-0-2024-23793)

    Vulnerability from cvelistv5 – Published: 2024-06-06 18:06 – Updated: 2024-08-01 23:13
    VLAI
    Title
    Upload of files outside application directory
    Summary
    The file upload feature in OTRS and ((OTRS)) Community Edition has a path traversal vulnerability. This issue permits authenticated agents or customer users to upload potentially harmful files to directories accessible by the web server, potentially leading to the execution of local code like Perl scripts. This issue affects OTRS: from 7.0.X through 7.0.49, 8.0.X, 2023.X, from 2024.X through 2024.3.2; ((OTRS)) Community Edition: from 6.0.1 through 6.0.34.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-06-06 20:07 UTC
    CWE
    • CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
    Impacted products
    Vendor Product Version
    OTRS AG OTRS Affected: 7.0.x , ≤ 7.0.49 (Patch)
    Affected: 8.0.x
    Affected: 2023.x
    Affected: 2024.x , ≤ 2024.3.2 (Patch)
    Create a notification for this product.
    OTRS AG ((OTRS)) Community Edition Affected: 6.0.1 , ≤ 6.0.34 (All)
    Create a notification for this product.
    otrs otrs Affected: 7.0.x , < 7.0.49 (custom)
    Affected: 8.0.x
    Affected: 2023.x
    Affected: 2024.x , < 2024.3.2 (custom)
        cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*
    Create a notification for this product.
    otrs otrs_community_edition Affected: 6.0.1 , < 6.0.34 (custom)
        cpe:2.3:a:otrs:otrs_community_edition:*:*:*:*:*:*:*:*
    Create a notification for this product.
    Date Public
    2024-06-03 07:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "affected": [
              {
                "cpes": [
                  "cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "otrs",
                "vendor": "otrs",
                "versions": [
                  {
                    "lessThan": "7.0.49",
                    "status": "affected",
                    "version": "7.0.x",
                    "versionType": "custom"
                  },
                  {
                    "status": "affected",
                    "version": "8.0.x"
                  },
                  {
                    "status": "affected",
                    "version": "2023.x"
                  },
                  {
                    "lessThan": "2024.3.2",
                    "status": "affected",
                    "version": "2024.x",
                    "versionType": "custom"
                  }
                ]
              },
              {
                "cpes": [
                  "cpe:2.3:a:otrs:otrs_community_edition:*:*:*:*:*:*:*:*"
                ],
                "defaultStatus": "affected",
                "product": "otrs_community_edition",
                "vendor": "otrs",
                "versions": [
                  {
                    "lessThan": "6.0.34",
                    "status": "affected",
                    "version": "6.0.1",
                    "versionType": "custom"
                  }
                ]
              }
            ],
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2024-23793",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-06-06T20:07:44.167335Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-06-06T20:22:49.508Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          },
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-01T23:13:07.327Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://otrs.com/release-notes/otrs-security-advisory-2024-05/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "defaultStatus": "affected",
              "modules": [
                "File Upload"
              ],
              "product": "OTRS",
              "vendor": "OTRS AG",
              "versions": [
                {
                  "lessThanOrEqual": "7.0.49",
                  "status": "affected",
                  "version": "7.0.x",
                  "versionType": "Patch"
                },
                {
                  "status": "affected",
                  "version": "8.0.x"
                },
                {
                  "status": "affected",
                  "version": "2023.x"
                },
                {
                  "lessThanOrEqual": "2024.3.2",
                  "status": "affected",
                  "version": "2024.x",
                  "versionType": "Patch"
                }
              ]
            },
            {
              "defaultStatus": "affected",
              "product": "((OTRS)) Community Edition",
              "vendor": "OTRS AG",
              "versions": [
                {
                  "lessThanOrEqual": "6.0.34",
                  "status": "affected",
                  "version": "6.0.1",
                  "versionType": "All"
                }
              ]
            }
          ],
          "datePublic": "2024-06-03T07:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "The file upload feature in OTRS and ((OTRS)) Community Edition has a path traversal vulnerability. This issue permits authenticated agents or customer users to upload potentially harmful files to directories accessible by the web server, potentially leading to the execution of local code like Perl scripts.\u003cbr\u003e\u003cp\u003eThis issue affects OTRS: from 7.0.X through 7.0.49, 8.0.X, 2023.X, from 2024.X through 2024.3.2; ((OTRS)) Community Edition: from 6.0.1 through 6.0.34.\u003c/p\u003e"
                }
              ],
              "value": "The file upload feature in OTRS and ((OTRS)) Community Edition has a path traversal vulnerability. This issue permits authenticated agents or customer users to upload potentially harmful files to directories accessible by the web server, potentially leading to the execution of local code like Perl scripts.\nThis issue affects OTRS: from 7.0.X through 7.0.49, 8.0.X, 2023.X, from 2024.X through 2024.3.2; ((OTRS)) Community Edition: from 6.0.1 through 6.0.34.\n\n"
            }
          ],
          "impacts": [
            {
              "capecId": "CAPEC-17",
              "descriptions": [
                {
                  "lang": "en",
                  "value": "CAPEC-17 Using Malicious Files"
                }
              ]
            },
            {
              "capecId": "CAPEC-549",
              "descriptions": [
                {
                  "lang": "en",
                  "value": "CAPEC-549 Local Execution of Code"
                }
              ]
            }
          ],
          "metrics": [
            {
              "cvssV3_1": {
                "attackComplexity": "LOW",
                "attackVector": "NETWORK",
                "availabilityImpact": "LOW",
                "baseScore": 6.3,
                "baseSeverity": "MEDIUM",
                "confidentialityImpact": "NONE",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "REQUIRED",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L",
                "version": "3.1"
              },
              "format": "CVSS",
              "scenarios": [
                {
                  "lang": "en",
                  "value": "GENERAL"
                }
              ]
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-22",
                  "description": "CWE-22 Improper Limitation of a Pathname to a Restricted Directory (\u0027Path Traversal\u0027)",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2024-06-06T18:06:58.805Z",
            "orgId": "2e1bf29f-dc29-4ed8-830c-7b9348b6f0e8",
            "shortName": "OTRS"
          },
          "references": [
            {
              "url": "https://otrs.com/release-notes/otrs-security-advisory-2024-05/"
            }
          ],
          "solutions": [
            {
              "lang": "en",
              "supportingMedia": [
                {
                  "base64": false,
                  "type": "text/html",
                  "value": "Update to OTRS\u0026nbsp;2024.4.3 or OTRS 7.0.50 (extended support only)\u003cbr\u003e"
                }
              ],
              "value": "Update to OTRS\u00a02024.4.3 or OTRS 7.0.50 (extended support only)\n"
            }
          ],
          "source": {
            "advisory": "OSA-2024-05",
            "defect": [
              "Issue#2411"
            ],
            "discovery": "INTERNAL"
          },
          "title": "Upload of files outside application directory",
          "x_generator": {
            "engine": "Vulnogram 0.1.0-dev"
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "2e1bf29f-dc29-4ed8-830c-7b9348b6f0e8",
        "assignerShortName": "OTRS",
        "cveId": "CVE-2024-23793",
        "datePublished": "2024-06-06T18:06:58.805Z",
        "dateReserved": "2024-01-22T10:32:00.704Z",
        "dateUpdated": "2024-08-01T23:13:07.327Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    JVNDB-2011-000019

    Vulnerability from jvndb - Published: 2011-03-07 09:19 - Updated:2011-03-07 09:19
    Severity
    N/A (UNKNOWN) - -
    Summary
    OTRS vulnerable to OS command injection
    Details
    OTRS contains an OS command injection vulnerability. OTRS provided by the OTRS Project is a ticket management system. OTRS contains an OS command injection vulnerability. Takeshi Terada of Mitsui Bussan Secure Directions reported this vulnerability to IPA. JPCERT/CC coordinated with the vendor under Information Security Early Warning Partnership.
    Impacted products
    Show details on JVN DB website

    {
      "@rdf:about": "https://jvndb.jvn.jp/en/contents/2011/JVNDB-2011-000019.html",
      "dc:date": "2011-03-07T18:19+09:00",
      "dcterms:issued": "2011-03-07T18:19+09:00",
      "dcterms:modified": "2011-03-07T18:19+09:00",
      "description": "OTRS contains an OS command injection vulnerability.\r\n\r\nOTRS provided by the OTRS Project is a ticket management system. OTRS contains an OS command injection vulnerability.\r\n\r\nTakeshi Terada of Mitsui Bussan Secure Directions reported this vulnerability to IPA.\r\nJPCERT/CC coordinated with the vendor under Information Security Early Warning Partnership.",
      "link": "https://jvndb.jvn.jp/en/contents/2011/JVNDB-2011-000019.html",
      "sec:cpe": {
        "#text": "cpe:/a:otrs:otrs",
        "@product": "OTRS",
        "@vendor": "OTRS",
        "@version": "2.2"
      },
      "sec:cvss": {
        "@score": "6.8",
        "@severity": "Medium",
        "@type": "Base",
        "@vector": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
        "@version": "2.0"
      },
      "sec:identifier": "JVNDB-2011-000019",
      "sec:references": [
        {
          "#text": "http://jvn.jp/en/jp/JVN73162541/index.html",
          "@id": "JVN#73162541",
          "@source": "JVN"
        },
        {
          "#text": "http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0456",
          "@id": "CVE-2011-0456",
          "@source": "CVE"
        },
        {
          "#text": "http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-0456",
          "@id": "CVE-2011-0456",
          "@source": "NVD"
        },
        {
          "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
          "@id": "CWE-78",
          "@title": "OS Command Injection(CWE-78)"
        }
      ],
      "title": "OTRS vulnerable to OS command injection"
    }