vulnerability

FreeBSD: VID-51498ee4-39a1-11ef-b609-002590c1f29c (CVE-2024-3262): Request Tracker -- information exposure vulnerability

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:C/I:N/A:N)
Published
Jul 4, 2024
Added
Jul 4, 2024
Modified
Dec 10, 2025

Description

Request Tracker reports: CVE-2024-3262 describes previously viewed pages being stored in the browser cache, which is the typical default behavior of most browsers to enable the "back" button. Someone who gains access to a host computer could potentially view ticket data using the back button, even after logging out of RT. The CVE specifically references RT version 4.4.1, but this behavior is present in most browsers viewing all versions of RT before 5.0.6.

Solution

freebsd-upgrade-package-rt50
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.