Hello,Thank you.
This is what they said on the security advisory:
As a workaround it is also possible to replace the following files with a fixed version.
OTRS 2.1.x:
Kernel/Modules/AdminPackageManager.pm 1.39.2.2
OTRS 2.2.x:
Kernel/Modules/AdminPackageManager.pm 1.46.2.6
OTRS 2.3.x:
Kernel/Modules/AdminPackageManager.pm 1.65.2.8
OTRS 2.4.x:
Kernel/Modules/AdminPackageManager.pm 1.81.2.4
OTRS 3.0.x:
Kernel/Modules/AdminPackageManager.pm 1.98.2.2
Also available on http://source.otrs.org/
Regards,
Leonardo Certuche
www.itconsultores.com.co
Medellín, Colombia