Lucene search

K
osvGoogleOSV:CVE-2021-38562
HistoryOct 18, 2021 - 9:15 a.m.

CVE-2021-38562

2021-10-1809:15:08
Google
osv.dev
11
practical request tracker
sensitive information
disclosure
timing attack
rest2
middleware
auth.pm

AI Score

6.2

Confidence

Low

EPSS

0.003

Percentile

71.3%

Best Practical Request Tracker (RT) 4.2 before 4.2.17, 4.4 before 4.4.5, and 5.0 before 5.0.2 allows sensitive information disclosure via a timing attack against lib/RT/REST2/Middleware/Auth.pm.

AI Score

6.2

Confidence

Low

EPSS

0.003

Percentile

71.3%