CVE-2014-4744Medium· 4.3▾ SunlitMultiple cross-site scripting (XSS) vulnerabilities in osTicket before 1.9.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Phone Number field to open.php or (2) Phone number field, (3) passwd1 field, (4) passw…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 10.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.9%
1.9% → 1.9%
Multiple cross-site scripting (XSS) vulnerabilities in osTicket before 1.9.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Phone Number field to open.php or (2) Phone number field, (3) passwd1 field, (4) passwd2 field, or (5) do parameter to account.php.
osticket <= 1.9.1osticket = 1.0osticket = 1.2.7osticket = 1.3.0osticket = 1.6osticket = 1.6.0osticket = 1.8.0osticket = 1.8.0.1osticket = 1.8.0.2osticket = 1.8.0.3osticket = 1.8.0.4osticket = 1.8.1osticket = 1.8.1.1osticket = 1.8.1.2osticket = 1.8.3osticket = 1.8.4osticket = 1.9.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2022-32074Medium· 5.4A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML vi…
CVE-2020-24917Medium· 6.1osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in include/ajax.draft.php.
CVE-2020-16193Medium· 5.4osTicket before 1.14.3 allows XSS because include/staff/banrule.inc.php has an unvalidated echo $info['notes'] call.
CVE-2019-14750Medium· 6.1An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1
CVE-2019-14748Medium· 5.4An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1
CVE-2019-11537Medium· 6.1In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can a…