VYPR
Low severity3.5NVD Advisory· Published Jul 20, 2020· Updated Jun 17, 2026

CVE-2020-1776

CVE-2020-1776

Description

When an agent user is renamed or set to invalid the session belonging to the user is keept active. The session can not be used to access ticket data in the case the agent is invalid. This issue affects ((OTRS)) Community Edition: 6.0.28 and prior versions. OTRS: 7.0.18 and prior versions, 8.0.4. and prior versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • OTRS/Otrs4 versions
    cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*range: >=7.0.0,<7.0.19
    • cpe:2.3:a:otrs:otrs:*:*:*:*:community:*:*:*range: <6.0.29
    • (no CPE)range: <=7.0.18, <=8.0.4
    • (no CPE)range: 7.0.x
  • OTRS/((OTRS)) Community Editionllm-fuzzy2 versions
    <=6.0.28+ 1 more
    • (no CPE)range: <=6.0.28
    • (no CPE)range: 6.0.x

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.