Lucene search

K
osvGoogleOSV:CVE-2022-27332
HistoryApr 27, 2022 - 3:15 a.m.

CVE-2022-27332

2022-04-2703:15:39
Google
osv.dev
5

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

32.6%

An access control issue in Zammad v5.0.3 allows attackers to write entries to the CTI caller log without authentication. This vulnerability can allow attackers to execute phishing attacks or cause a Denial of Service (DoS).

CPENameOperatorVersion
zammadeq3.7.0
zammadeq1.6.1
zammadeq2.10.0
zammadeq1.6.0

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

32.6%

Related for OSV:CVE-2022-27332