CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects OpenSSL. It may be remotely exploitable.
CVE
CVE-2009-5057
Severity
MEDIUM
CVSS
5
EPSS
1.65%
OpenSSL
Original NVD Description
The S/MIME feature in Open Ticket Request System (OTRS) before 2.3.4 does not configure the RANDFILE and HOME environment variables for OpenSSL, which might make it easier for remote attackers to decrypt e-mail messages that had lower than intended entropy available for cryptographic operations, related to inability to write to the seeding file.