CVE-2020-1769 — AG Community Edition vulnerability
Severity
4.3MEDIUMNVD
CNA3.5
EPSS
0.7%
top 28.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 27
Latest updateMay 24
Description
In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue. This issue affects: ((OTRS)) Community Edition: 5.0.41 and prior versions, 6.0.26 and prior versions. OTRS: 7.0.15 and prior versions.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4
Affected Packages5 packages
🔴Vulnerability Details
3GHSA▶
GHSA-xfh6-pvv6-h7qg: In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue↗2022-05-24
OSV▶
CVE-2020-1769: In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue↗2020-03-27
📋Vendor Advisories
1Debian▶
CVE-2020-1769: otrs2 - In the login screens (in agent and customer interface), Username and Password fi...↗2020