Osticket
13 known vulnerabilities
Top Products
osTicket prior to v1.17.6 and v1.18.2 are vulnerable to Broken Access Control Vulnerability in /scp/ajax.php.
osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly v
osTicket 1.10.1 allows arbitrary client-side JavaScript code execution on victims who click a crafted support/scp/ticket
In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a
Frequently Asked Questions
How many CVEs affect Osticket?
Osticket has 13 CVE records in our database, including 2 critical and 6 high severity vulnerabilities.
What are the most severe Osticket vulnerabilities?
Osticket has 2 critical severity (CVSS 9.0+) and 6 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Osticket vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Osticket products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Osticket Vulnerabilities
CyberStrike scans your infrastructure for Osticket vulnerabilities and provides real-time remediation guidance.
Get Started