Medium severity6.1NVD Advisory· Published May 29, 2017· Updated May 13, 2026
CVE-2017-9299
CVE-2017-9299
Description
Open Ticket Request System (OTRS) 3.3.9 has XSS in index.pl?Action=AgentStats requests, as demonstrated by OrderBy=[XSS] and Direction=[XSS] attacks. NOTE: this CVE may have limited relevance because it represents a 2017 discovery of an issue in software from 2014. The 3.3.20 release, for example, is not affected.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- code610.blogspot.com/2017/05/turnkey-feat-otrs.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.