Lucene search

K
osvGoogleOSV:CVE-2020-29158
HistoryDec 28, 2020 - 8:15 a.m.

CVE-2020-29158

2020-12-2808:15:11
Google
osv.dev
5

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%

An issue was discovered in Zammad before 3.5.1. An Agent with Customer permissions in a Group can bypass intended access control on internal Articles via the Ticket detail view.

CPENameOperatorVersion
zammadeq1.6.1
zammadeq1.6.0
zammadeq2.10.0
zammadeq3.7.0

6.9 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.7%

Related for OSV:CVE-2020-29158