Improper Input Validation Vulnerability in OTRS and OTRS Community Edition
⚠️ CVE-Referenzen:
CVE-2026-48188
Otrs Ag - Otrs - CRITICAL - CVE-2026-48188.
An improper input validation flaw in the database layer of OTRS and OTRS Community Edition can be exploited by an unauthenticated user to perform SQL injection attacks. This vulnerability leads to potential authentication bypass when the MySQL/MariaDB server operates in an insecure configuration that lacks proper escaping. Affected versions include multiple releases from 7.0.X to 2026.X and the Community Edition 6.0.x, as well as other products based on the OTRS framework. Users are encouraged to review their configurations and apply any recommended patches or updates.
Quelle: securityvulnerability.io