CVE-2017-5944

Source
https://nvd.nist.gov/vuln/detail/CVE-2017-5944
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-5944.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2017-5944
Downstream
Related
Published
2017-07-03T16:29:00Z
Modified
2025-04-20T01:37:25Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

The dashboard subscription interface in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x before 4.4.2 might allow remote authenticated users with certain privileges to execute arbitrary code via a crafted saved search name.

References

Affected packages