CVE-2012-4751

Source
https://nvd.nist.gov/vuln/detail/CVE-2012-4751
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2012-4751.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2012-4751
Downstream
Related
Published
2012-10-22T16:55:01Z
Modified
2025-04-11T00:51:21Z
Summary
[none]
Details

Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.15, 3.0.x before 3.0.17, and 3.1.x before 3.1.11 allows remote attackers to inject arbitrary web script or HTML via an e-mail message body with whitespace before a javascript: URL in the SRC attribute of an element, as demonstrated by an IFRAME element.

References

Affected packages