Zammad
cpe:2.3:a:zammad:zammad:*:*:*:*:*:*:*
- <= 7.0.0
A vulnerability in Zammad, a web-based open-source helpdesk and customer support system, allows unauthenticated remote attackers to access sensitive internal entity data through the 'getting started' endpoint. This issue affects Zammad versions prior to 7.0.1 and 6.5.4, even after the system setup was completed.
Exploitation of this vulnerability could lead to unauthorized access to sensitive internal data.
Users can upgrade to Zammad versions 7.0.1 or 6.5.4 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.