Osticket

Osticket

32 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.73%
  • Veröffentlicht 07.08.2019 17:15:12
  • Zuletzt bearbeitet 21.11.2024 04:27:15

An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. The Ticket creation form allows users to upload files along with queries. It was found that the file-upload functionality has fewer (or no) mitigations implemented for file c...

Exploit
  • EPSS 4.62%
  • Veröffentlicht 25.04.2019 19:29:01
  • Zuletzt bearbeitet 21.11.2024 04:21:17

In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can appear in an e...

Exploit
  • EPSS 2.48%
  • Veröffentlicht 27.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:45

Cross-site scripting (XSS) vulnerability in /scp/directory.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "order" parameter.

Exploit
  • EPSS 2.48%
  • Veröffentlicht 27.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:46

Cross-site scripting (XSS) vulnerability in /scp/index.php in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "sort" parameter.

Exploit
  • EPSS 1.02%
  • Veröffentlicht 27.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:46

Enhancesoft osTicket before 1.10.2 allows remote attackers to reset arbitrary passwords (when an associated e-mail address is known) by leveraging guest access and guessing a 6-digit number.

Exploit
  • EPSS 1.31%
  • Veröffentlicht 27.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:45

Integer format vulnerability in the ticket number generator in Enhancesoft osTicket before 1.10.2 allows remote attackers to cause a denial-of-service (preventing the creation of new tickets) via a large number of digits in the ticket number format s...

Exploit
  • EPSS 2.07%
  • Veröffentlicht 27.03.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:45

Cross-site scripting (XSS) vulnerability in /ajax.php/form/help-topic in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "message" parameter.

Exploit
  • EPSS 15.98%
  • Veröffentlicht 23.10.2017 08:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly validate the uploaded file's contents and thus accepts any type of file, such as with a tickets.php request that is modified with a...

  • EPSS 1.21%
  • Veröffentlicht 16.10.2017 01:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

osTicket 1.10.1 allows arbitrary client-side JavaScript code execution on victims who click a crafted support/scp/tickets.php?status= link, aka XSS. Session ID and data theft may follow as well as the possibility of bypassing CSRF protections, inject...

  • EPSS 2.92%
  • Veröffentlicht 12.09.2017 21:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to file.php.