A vulnerability in OTRS Application Server and reverse...
Moderate severity
Unreviewed
Published
Jan 27, 2025
to the GitHub Advisory Database
•
Updated Jan 27, 2025
Description
Published by the National Vulnerability Database
Jan 27, 2025
Published to the GitHub Advisory Database
Jan 27, 2025
Last updated
Jan 27, 2025
A vulnerability in OTRS Application Server and reverse proxy settings allows session hijacking due to missing attributes for sensitive cookie settings in HTTPS sessions.
This issue affects:
OTRS 7.0.X
OTRS 8.0.X
OTRS 2023.X
OTRS 2024.X
References