Vulnerabilities > CVE-2023-50457 - Incorrect Authorization vulnerability in Zammad 6.1.0/6.2.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
An issue was discovered in Zammad before 6.2.0. When listing tickets linked to a knowledge base answer, or knowledge base answers of a ticket, a user could see entries for which they lack permissions.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |