CVE-2026-2547
- EPSS 0.01%
- Veröffentlicht 16.02.2026 08:32:07
- Zuletzt bearbeitet 18.02.2026 21:45:21
A vulnerability was detected in LigeroSmart up to 6.1.26. The impacted element is the function AgentDashboard of the file /otrs/index.pl. Performing a manipulation of the argument Subaction results in cross site scripting. Remote exploitation of the ...
CVE-2026-2546
- EPSS 0.04%
- Veröffentlicht 16.02.2026 08:02:07
- Zuletzt bearbeitet 19.02.2026 19:39:34
A security vulnerability has been detected in LigeroSmart up to 6.1.26. The affected element is an unknown function of the file /otrs/index.pl. Such manipulation of the argument SortBy leads to cross site scripting. The attack may be launched remotel...
CVE-2026-2545
- EPSS 0.04%
- Veröffentlicht 16.02.2026 07:32:08
- Zuletzt bearbeitet 19.02.2026 19:39:45
A weakness has been identified in LigeroSmart up to 6.1.26. Impacted is an unknown function of the file /otrs/index.pl?Action=AgentTicketSearch. This manipulation of the argument Profile causes cross site scripting. The attack may be initiated remote...
CVE-2026-1049
- EPSS 0.04%
- Veröffentlicht 17.01.2026 17:32:05
- Zuletzt bearbeitet 27.02.2026 03:51:36
A security vulnerability has been detected in LigeroSmart up to 6.1.26. The affected element is an unknown function of the file /otrs/index.pl. Such manipulation of the argument TicketID leads to cross site scripting. It is possible to launch the att...
CVE-2026-1048
- EPSS 0.01%
- Veröffentlicht 17.01.2026 17:15:48
- Zuletzt bearbeitet 27.02.2026 03:52:11
A weakness has been identified in LigeroSmart up to 6.1.26. Impacted is an unknown function of the file /otrs/index.pl?Action=AgentTicketZoom. This manipulation of the argument TicketID causes cross site scripting. It is possible to initiate the atta...
CVE-2025-15437
- EPSS 0.01%
- Veröffentlicht 02.01.2026 08:32:06
- Zuletzt bearbeitet 27.02.2026 03:39:52
A vulnerability was found in LigeroSmart up to 6.1.24. This affects an unknown part of the component Environment Variable Handler. Performing a manipulation of the argument REQUEST_URI results in cross site scripting. The attack may be initiated remo...