CVE-2026-18363
- EPSS 0.3%
- Veröffentlicht 30.07.2026 10:35:26
- Zuletzt bearbeitet 30.07.2026 14:12:18
A logic vulnerability in the password reset token validation routine implemented by osTicket in versions prior to v1.17.8 and v1.18.4. During the password reset process, the application retrieves the timestamp associated with the provided token and c...
CVE-2026-9507
- EPSS 0.4%
- Veröffentlicht 16.06.2026 11:47:56
- Zuletzt bearbeitet 16.06.2026 15:36:43
A session fixation vulnerability has been identified in osTicket v1.18.2. This security flaw allows an attacker to hijack a victim’s account by keeping the initial session identifier (OSTSESSID) active after a successful login. The issue lies in t...
CVE-2026-26895
- EPSS 0.35%
- Veröffentlicht 02.04.2026 00:00:00
- Zuletzt bearbeitet 24.07.2026 21:10:00
User enumeration vulnerability in /pwreset.php in osTicket v1.18.2 allows remote attackers to enumerate valid usernames registered in the platform.
CVE-2026-22200
- EPSS 73.13%
- Veröffentlicht 12.01.2026 18:34:12
- Zuletzt bearbeitet 14.07.2026 16:16:48
Enhancesoft osTicket versions 1.18.x prior to 1.18.3 and 1.17.x prior to 1.17.7 contain an arbitrary file read vulnerability in the ticket PDF export functionality. A remote attacker can submit a ticket containing crafted rich-text HTML that includes...
CVE-2025-26241
- EPSS 0.28%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 10.07.2026 18:20:35
A SQL injection vulnerability in the "Search" functionality of "tickets.php" page in osTicket <=1.17.5 allows authenticated attackers to execute arbitrary SQL commands via the "keywords" and "topic_id" URL parameters combination.
CVE-2023-46967
- EPSS 0.44%
- Veröffentlicht 20.02.2024 21:15:07
- Zuletzt bearbeitet 25.04.2025 20:42:42
Cross Site Scripting vulnerability in the sanitize function in Enhancesoft osTicket 1.18.0 allows a remote attacker to escalate privileges via a crafted support ticket.
CVE-2023-27149
- EPSS 0.35%
- Veröffentlicht 23.10.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 07:52:23
A stored cross-site scripting (XSS) vulnerability in Enhancesoft osTicket v1.17.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Label input parameter when updating a custom list.
CVE-2023-27148
- EPSS 0.35%
- Veröffentlicht 23.10.2023 20:15:08
- Zuletzt bearbeitet 21.11.2024 07:52:23
A stored cross-site scripting (XSS) vulnerability in the Admin panel in Enhancesoft osTicket v1.17.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Role Name parameter.
CVE-2021-45811
- EPSS 2.45%
- Veröffentlicht 08.09.2023 02:15:07
- Zuletzt bearbeitet 09.07.2026 01:17:12
A SQL injection vulnerability in the "Search" functionality of "tickets.php" page in osTicket 1.15.x allows authenticated attackers to execute arbitrary SQL commands via the "keywords" and "topic_id" URL parameters combination.
CVE-2023-30082
- EPSS 1%
- Veröffentlicht 14.06.2023 20:15:09
- Zuletzt bearbeitet 06.01.2025 17:15:12
A denial of service attack might be launched against the server if an unusually lengthy password (more than 10000000 characters) is supplied using the osTicket application. This can cause the website to go down or stop responding. When a long passwor...