CVE-2019-14748
- EPSS 2.73%
- Veröffentlicht 07.08.2019 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:27:15
An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. The Ticket creation form allows users to upload files along with queries. It was found that the file-upload functionality has fewer (or no) mitigations implemented for file c...
CVE-2019-11537
- EPSS 4.62%
- Veröffentlicht 25.04.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:21:17
In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can appear in an e...
CVE-2018-7193
- EPSS 2.48%
- Veröffentlicht 27.03.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:45
Cross-site scripting (XSS) vulnerability in /scp/directory.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "order" parameter.
CVE-2018-7196
- EPSS 2.48%
- Veröffentlicht 27.03.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:46
Cross-site scripting (XSS) vulnerability in /scp/index.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "sort" parameter.
CVE-2018-7195
- EPSS 1.02%
- Veröffentlicht 27.03.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:46
Enhancesoft osTicket before 1.10.2 allows remote attackers to reset arbitrary passwords (when an associated e-mail address is known) by leveraging guest access and guessing a 6-digit number.
CVE-2018-7194
- EPSS 1.31%
- Veröffentlicht 27.03.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:45
Integer format vulnerability in the ticket number generator in Enhancesoft osTicket before 1.10.2 allows remote attackers to cause a denial-of-service (preventing the creation of new tickets) via a large number of digits in the ticket number format s...
CVE-2018-7192
- EPSS 2.07%
- Veröffentlicht 27.03.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:45
Cross-site scripting (XSS) vulnerability in /ajax.php/form/help-topic in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "message" parameter.
CVE-2017-15580
- EPSS 15.98%
- Veröffentlicht 23.10.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly validate the uploaded file's contents and thus accepts any type of file, such as with a tickets.php request that is modified with a...
CVE-2017-15362
- EPSS 1.21%
- Veröffentlicht 16.10.2017 01:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
osTicket 1.10.1 allows arbitrary client-side JavaScript code execution on victims who click a crafted support/scp/tickets.php?status= link, aka XSS. Session ID and data theft may follow as well as the possibility of bypassing CSRF protections, inject...
CVE-2017-14396
- EPSS 2.92%
- Veröffentlicht 12.09.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to file.php.