FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

OTRS -- Multiple vulnerabilities

Affected packages
otrs < 5.0.26

Details

VuXML ID cebd05d6-ed7b-11e7-95f2-005056925db4
Discovery 2017-11-21
Entry 2017-12-30

OTRS reports:

An attacker who is logged into OTRS as an agent can request special URLs from OTRS which can lead to the execution of shell commands with the permissions of the web server user.

An attacker who is logged into OTRS as a customer can use the ticket search form to disclose internal article information of their customer tickets.

An attacker who is logged into OTRS as an agent can manipulate form parameters and execute arbitrary shell commands with the permissions of the OTRS or web server user.

An attacker can send a specially prepared email to an OTRS system. If this system has cookie support disabled, and a logged in agent clicks a link in this email, the session information could be leaked to external systems, allowing the attacker to take over the agent’s session.

References

CVE Name CVE-2017-16664
CVE Name CVE-2017-16854
CVE Name CVE-2017-16921
FreeBSD PR ports/224729
URL https://www.otrs.com/security-advisory-2017-07-security-update-otrs-framework/
URL https://www.otrs.com/security-advisory-2017-08-security-update-otrs-framework/
URL https://www.otrs.com/security-advisory-2017-09-security-update-otrs-framework/
URL https://www.otrs.com/security-advisory-2017-10-security-update-otrs-framework/