cbcvebase.
CVE-2020-1769
published 2020-03-27

CVE-2020-1769: In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue. This issue…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
In the login screens (in agent and customer interface), Username and Password fields use autocomplete, which might be considered as security issue. This issue affects: ((OTRS)) Community Edition: 5.0.41 and prior versions, 6.0.26 and prior versions. OTRS: 7.0.15 and prior versions.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianotrs2< otrs2 6.0.27-1 (bullseye)otrs2 6.0.27-1 (bullseye)
opensusebackports_sle
opensuseleap
opensuseleap
otrsotrs5.0.0 – 5.0.41
otrsotrs6.0.0 – 6.0.26
otrsotrs7.0.0 – 7.0.15
otrs_agcommunity_edition5.0.x – 5.0.41
otrs_agcommunity_edition6.0.x – 6.0.26
otrs_agotrs7.0.x – 7.0.15

CVSS provenance

nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
osv4.3MEDIUM