RSS   Vulnerabilities for 'Rt-extension-mobileui'   RSS

2014-11-15
 
CVE-2013-3737

CWE-200
 

 
The MobileUI (aka RT-Extension-MobileUI) extension before 1.04 in Request Tracker (RT) 4.0.0 before 4.0.13, when using the file-based session store (Apache::Session::File) and certain authentication extensions, allows remote attackers to reuse unauthorized sessions and obtain user preferences and caches via unspecified vectors.

 
2014-05-05
 
CVE-2013-3736

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in the MobileUI (aka RT-Extension-MobileUI) extension before 1.04 in Request Tracker (RT) 4.0.0 before 4.0.13 allows remote attackers to inject arbitrary web script or HTML via the name of an attached file.

 

 >>> Vendor: Bestpractical 5 Products
Request tracker
RT
2000rt
RTFM
Rt-extension-mobileui


Copyright 2024, cxsecurity.com

 

Back to Top