XSS attack in appointment edit popup screen
CVE-2021-36094
5.7MEDIUM
What is CVE-2021-36094?
It's possible to craft a request for appointment edit screen, which could lead to the XSS attack. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.28 and prior versions.
Affected Version(s)
((OTRS)) Community Edition 6.0.1 < 6.0.x*
OTRS 7.0.x <= 7.0.28