AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2005-3893

HIGH · CVSS 7.5 EPSS 7.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-11-29 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2005-3893
Severity
HIGH
CVSS
7.5
EPSS
7.17%

Original NVD Description

Multiple SQL injection vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) user parameter in the Login action, and remote authenticated users via the (2) TicketID and (3) ArticleID parameters of the AgentTicketPlain action.