VYPR

Survey module

by OTRS

CVEs (1)

  • CVE-2023-38057MedJul 24, 2023
    risk 0.27cvss 4.1epss 0.00

    An improper input validation vulnerability in OTRS Survey modules allows any attacker with a link to a valid and unanswered survey request to inject javascript code in free text answers. This allows a cross site scripting attack while reading the replies as authenticated agent.…