CVE-2019-12497
MEDIUM5.3EPSS 0.59%Published: 6/17/2019Modified: 4/28/2026
Also known as:DEBIAN-CVE-2019-12497
Description
An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8, Community Edition 6.0.x through 6.0.19, and Community Edition 5.0.x through 5.0.36. In the customer or external frontend, personal information of agents (e.g., Name and mail address) can be disclosed in external notes.
Affected packages (1)
- Debian/otrs2from 0, < 6.0.19-1
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM5.3 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |