Aggregates CVE and security vulnerability intelligence across all best_practical_solutions-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Disclosed issues often relate to vendor risk cross-site scripting; exposure may include vendor impact session compromise in vendor surface software deployment and vendor surface production workloads contexts.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2012-2768 | Multiple cross-site scripting (XSS) vulnerabilities in the topic administration page in the RTFM extension 2.0.4 through 2.4.3 for Best Practical Solutions RT allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | [email protected] | 4.3 | 1.19% | 2012-08-15 | 2026-06-16 |
| CVE-2006-2169 | RT: Request Tracker 3.5.HEAD allows remote attackers to obtain sensitive information via the Rows parameter in Dist/Display.html, which reveals the installation path in an error message. | [email protected] | 5.0 | 1.24% | 2006-05-04 | 2026-06-16 |
| CVE-2003-0273 | Cross-site scripting (XSS) vulnerability in the web interface for Request Tracker (RT) 1.0 through 1.0.7 allows remote attackers to execute script via message bodies. | [email protected] | 6.8 | 1.19% | 2003-05-27 | 2026-06-16 |