Best Practical Request Tracker 5.0.4

CPE Details

Best Practical Request Tracker 5.0.4
5.0.4
2025-06-09
16h56 +00:00
2025-06-09
16h56 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:bestpractical:request_tracker:5.0.4:*:*:*:*:*:*:*

Informations

Vendor

bestpractical

Product

request_tracker

Version

5.0.4

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2025-30087 2025-05-28 00h00 +00:00 Best Practical RT (Request Tracker) 4.4 through 4.4.7 and 5.0 through 5.0.7 allows XSS via injection of crafted parameters in a search URL.
7.2
High
CVE-2025-31500 2025-05-28 00h00 +00:00 Best Practical RT (Request Tracker) 5.0 through 5.0.7 allows XSS via JavaScript injection in an Asset name.
7.2
High
CVE-2025-31501 2025-05-28 00h00 +00:00 Best Practical RT (Request Tracker) 5.0 through 5.0.7 allows XSS via JavaScript injection in an RT permalink.
7.2
High
CVE-2023-41259 2023-11-02 23h00 +00:00 Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Disclosure via fake or spoofed RT email headers in an email message or a mail-gateway REST API call.
7.5
High
CVE-2023-41260 2023-11-02 23h00 +00:00 Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Exposure in responses to mail-gateway REST API calls.
7.5
High
CVE-2023-45024 2023-11-02 23h00 +00:00 Best Practical Request Tracker (RT) 5 before 5.0.5 allows Information Disclosure via a transaction search in the transaction query builder.
7.5
High