Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint. | |
| Title | Zammad 7.0.1 - Improper authorization in ticket article attachment cloning | |
| First Time appeared |
Zammad
Zammad zammad |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:zammad:zammad:*:*:linux:*:*:*:*:* cpe:2.3:a:zammad:zammad:*:*:macos:*:*:*:*:* cpe:2.3:a:zammad:zammad:*:*:windows:*:*:*:*:* |
|
| Vendors & Products |
Zammad
Zammad zammad |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Fluid Attacks
Published:
Updated: 2026-08-04T18:12:04.163Z
Reserved: 2026-06-24T17:08:23.072Z
Link: CVE-2026-13229
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-04T19:30:05Z
Weaknesses