|
OTRS Index.PL Cross-Site Scripting Vulnerability
An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI. The following proof of concept is available: http://www.example.com/server/otre/index/pl?Action=AgentTicketMailbox&Subaction=[xss] |
|
Privacy Statement |