Candidate: CVE-2011-1690 PublicDate: 2011-04-22 10:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1690 Description: Best Practical Solutions RT 3.6.0 through 3.6.10 and 3.8.0 through 3.8.8 allows remote attackers to trick users into sending credentials to an arbitrary server via unspecified vectors. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_request-tracker3.6: upstream_request-tracker3.6: released (3.6.11) dapper_request-tracker3.6: DNE hardy_request-tracker3.6: pending (3.6.5-1ubuntu0.1) karmic_request-tracker3.6: ignored (reached end-of-life) lucid_request-tracker3.6: DNE maverick_request-tracker3.6: DNE natty_request-tracker3.6: DNE oneiric_request-tracker3.6: DNE precise_request-tracker3.6: DNE quantal_request-tracker3.6: DNE raring_request-tracker3.6: DNE devel_request-tracker3.6: DNE Patches_request-tracker3.8: upstream_request-tracker3.8: released (3.8.10) dapper_request-tracker3.8: DNE hardy_request-tracker3.8: DNE karmic_request-tracker3.8: ignored (reached end-of-life) lucid_request-tracker3.8: released (3.8.7-1ubuntu2.2) maverick_request-tracker3.8: released (3.8.8-4ubuntu0.1) natty_request-tracker3.8: released (3.8.10-1) oneiric_request-tracker3.8: not-affected precise_request-tracker3.8: not-affected quantal_request-tracker3.8: DNE raring_request-tracker3.8: DNE devel_request-tracker3.8: DNE