{"id":"CVE-2019-10065","details":"An issue was discovered in Open Ticket Request System (OTRS) 7.0 through 7.0.6. An attacker who is logged into OTRS as a customer user can use the search result screens to disclose information from internal FAQ articles, a different vulnerability than CVE-2019-9753.","modified":"2026-03-15T22:28:56.486976Z","published":"2020-03-10T13:15:12.423Z","references":[{"type":"ADVISORY","url":"https://community.otrs.com/category/release-and-security-notes-en/"},{"type":"ADVISORY","url":"https://otrs.com/release-notes/otrs-security-advisory-2019-07/"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"7.0.0"},{"last_affected":"7.0.6"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-10065.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"}]}