Vulnerabilities (CVE)

Filtered by vendor Osticket Subscribe
Filtered by product Osticket
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-24881 1 Osticket 1 Osticket 2021-01-30 7.5 HIGH 9.8 CRITICAL
SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.
CVE-2017-15580 1 Osticket 1 Osticket 2019-03-26 7.5 HIGH 9.8 CRITICAL
osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly validate the uploaded file's contents and thus accepts any type of file, such as with a tickets.php request that is modified with a .html extension changed to a .exe extension. An attacker can leverage this vulnerability to upload arbitrary files on the web application having malicious content.
CVE-2017-14396 1 Osticket 1 Osticket 2017-09-21 7.5 HIGH 9.8 CRITICAL
In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to file.php.