361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
802
This Week
12 results · Page 1/1
A Cross-Site Scripting (XSS) vulnerability exists in Znuny::ITSM 6.5.x in the customer.pl endpoint via the OTRSCustomerInterface parameter
An issue was discovered in Znuny before 7.1.4. Permissions are not checked properly when using the Generic Interface to update ticket metadata.
znuny
An issue was discovered in Znuny before 7.1.5. When generating a support bundle, not all passwords are masked.
znuny
An Eval Injection issue was discovered in Znuny through 7.1.3. A user with write access to the configuration file can use this to execute a command executed by the user running the backup.pl script.
znuny