Znuny
cpe:2.3:a:znuny:znuny:*:*:*:*:*:*:*
- >= 6.5.1, <= 6.5.11
- >= 7.0.1, <= 7.1.3
- >= 6.0, <= 6.0
A vulnerability exists in Znuny versions prior to 7.1.4, where permissions are not properly validated when the Generic Interface is used to modify ticket metadata. This flaw allows ticket attributes to be altered without the necessary authorization.
Exploitation of this vulnerability could lead to unauthorized changes in ticket metadata, potentially allowing users to manipulate ticket attributes inappropriately.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.