Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 allows remote authenticated users to read (1) hashes of former passwords and (2) ticket correspondence history by leveraging access to a privileged account.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2480-1 | request-tracker3.8 security update |
EUVD |
EUVD-2011-2078 | Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 allows remote authenticated users to read (1) hashes of former passwords and (2) ticket correspondence history by leveraging access to a privileged account. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T22:46:00.987Z
Reserved: 2011-05-13T00:00:00
Link: CVE-2011-2084
No data.
Status : Deferred
Published: 2012-06-04T19:55:01.633
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-2084
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD