An external attacker is able to send a specially crafted email (with many recipients) and trigger a potential DoS of the system
Solution:
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Link | Tags |
---|---|
https://otrs.com/release-notes/otrs-security-advisory-2022-13/ | vendor advisory |