CVE-2013-2625

An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:otrs:faq:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:faq:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:faq:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_help_desk:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_help_desk:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_help_desk:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_itsm:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_itsm:*:*:*:*:*:*:*:*
cpe:2.3:a:otrs:otrs_itsm:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-11-27 19:15

Updated : 2020-08-18 15:05


NVD link : CVE-2013-2625

Mitre link : CVE-2013-2625

CVE.ORG link : CVE-2013-2625


JSON object : View

Products Affected

otrs

  • faq
  • otrs_itsm
  • otrs_help_desk

opensuse

  • opensuse

debian

  • debian_linux
CWE
CWE-269

Improper Privilege Management