CVE-2019-9751

Source
https://nvd.nist.gov/vuln/detail/CVE-2019-9751
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-9751.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-9751
Downstream
Published
2019-03-13T22:29:00Z
Modified
2024-11-21T04:52:14Z
Severity
  • 4.8 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

An issue was discovered in Open Ticket Request System (OTRS) 6.x before 6.0.17 and 7.x before 7.0.5. An attacker who is logged into OTRS as an admin user may manipulate the URL to cause execution of JavaScript in the context of OTRS. This is related to Kernel/Output/Template/Document.pm.

References

Affected packages