VDB
DEBIAN-CVE-2020-1776
DEBIAN-CVE-2020-1776
PUBLISHED
CVSS 4.300000190734863 MEDIUM
When an agent user is renamed or set to invalid the session belonging to the user is keept active. The session can not be used to access ticket data in the case the agent is invalid. This issue affects ((OTRS)) Community Edition: 6.0.28 and prior versions. OTRS: 7.0.18 and prior versions, 8.0.4. and prior versions.
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:11 | otrs2 | 0, 2.0.4, 2.0.4 |
Timeline
- Jul 20, 2020 CVE Published
- Apr 28, 2026 CVE Updated