Security Advisories 





Dear reader, 
The following security fixes were made: 
OTRS Security Advisory 2024-05 
ID: OSA-2024-05
Date: 2024-06-03
Title: Possible remote code execution in uploaded filenames
Severity (CVSS v3.1): 6.3 MEDIUM
Severity (CVSS v4.0): 6.8 MEDIUM
Urgency: Moderate
Products: OTRS, ((OTRS)) Community Edition
Fixed in: OTRS 7.0.50, OTRS 2024.4.3
CVSS VECTORs: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L / 
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/U:Amber
References: CVE-2024-23793 
To read the entire Security Advisory/Advisories, please follow this link: 
https://otrs.com/otrs-software-solutions/otrs/overview-release-notes-security-advisories/security-advisories/
 
<https://otrs.com/otrs-software-solutions/otrs/overview-release-notes-security-advisories/security-advisories/>
 

Kind regards, 
Your OTRS release team 


<https://otrs.com/contact/> 










Subscribe to the OTRS Newsletter. 

Read about OTRS service management solutions, product features, and interesting 
tips from our experts every month. Simply select your desired language. 








German <https://otrs.com/de/newsletter-register/> 

Spanish <https://otrs.com/es/newsletter-register/> 



English <https://otrs.com/newsletter-register/> 

Portuguese <https://otrs.com/pt/newsletter-register/> 










<https://www.facebook.com/OTRSGroup/> 
<https://twitter.com/otrsgroup> 
<https://www.linkedin.com/company/154779> 
<https://www.youtube.com/channel/UCHdOAyuwwkkk5ko_vy0X8_g> 
<https://www.instagram.com/otrs_group/> 















Visit www.otrs.com <https://www.otrs.com> or contact us. 
<https://otrs.com/contact/> 






Legal notice <https://otrs.com/legal-notice/> 



Privacy Statement <https://otrs.com/privacy-policy/> 

























Attachment: smime.p7s
Description: S/MIME cryptographic signature

-- 
_______________________________________________
announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
To manage your subscription or browse the message archive visit:
  https://lists.otrs.org/postorius/lists/announce.lists.otrs.org/

Reply via email to