Unauthenticated Write Access Vulnerability in Zammad v5.0.3

Unauthenticated Write Access Vulnerability in Zammad v5.0.3

CVE-2022-27332 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

An access control issue in Zammad v5.0.3 allows attackers to write entries to the CTI caller log without authentication. This vulnerability can allow attackers to execute phishing attacks or cause a Denial of Service (DoS).

Learn more about our Phishing Simulation.