CVE-2021-21434
Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. ano
Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. another agent who wants to make changes in the survey). This issue affects: OTRS AG Survey 6.0.x version 6.0.20 and prior versions.
7.0.x version 7.0.19 and prior versions.
LOW · CVSS 3.5
EPSS 0.00364
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0