Loading...
Loading...
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.15, 3.0.x before 3.0.17, and 3.1.x before 3.1.11 allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with whitespace before a javascript: URL in the SRC attribute of an element, as demonstrated by an IFRAME element.
October 22, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-4751
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.