Recently I found vulnerabilities in Request Tracker. It was possible to obtain sensitive information without authentication using the default install.
With Digital Trust Center and NCSC-NL we reported this to the vendor. They released a new version shortly after. Using Request Tracker? Update now!
Recently I found vulnerabilities in Request Tracker. It was possible to obtain sensitive information without authentication using the default install.
With Digital Trust Center and NCSC-NL we reported this to the vendor. They released a new version shortly after. Using Request Tracker? Update now!