Medium severity4.6NVD Advisory· Published Jul 8, 2019· Updated Jun 17, 2026
CVE-2018-11563
CVE-2018-11563
Description
An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.7. A carefully constructed email could be used to inject and execute arbitrary stylesheet or JavaScript code in a logged in customer's browser in the context of the OTRS customer panel application.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- OTRS/Open Ticket Request Systemdescription
- Range: <=6.0.7
Patches
Vulnerability mechanics
References
4- community.otrs.com/security-advisory-2018-02-security-update-for-otrs-framework/nvdPatchVendor Advisory
- lists.debian.org/debian-lts-announce/2019/08/msg00018.htmlnvdMailing ListThird Party Advisory
- lists.otrs.org/pipermail/announce/2018/000720.htmlnvdVendor Advisory
- www.otrs.com/category/release-and-security-notes-en/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.