CVE-2019-14750
osTicket 1.12 - Persistent Cross-Site Scripting
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. Stored XSS exists in setup/install.php. It was observed that no input sanitization was provided in the firstname and lastname fields of the application. The insertion of malicious queries in those fields leads to the execution of those queries. This can further lead to cookie stealing or other malicious actions.
Se detectó un problema en osTicket versiones anteriores a 1.10.7 y versiones 1.12.x anteriores a 1.12.1. Se presenta una vulnerabilidad de tipo XSS Almacenado en el archivo setup/install.php. Se observó que no fue proporcionado ningún saneamiento de entrada en los campos de firstname y lastname. La inserción de consultas maliciosas en esos campos conlleva a la ejecución de esas consultas. Esto puede conllevar aún más al robo de cookies u otras acciones maliciosas.
An issue was discovered in osTicket versions before 1.10.7 and 1.12.x before 1.12.1. Stored XSS exists in setup/install.php. It was observed that no input sanitization was provided in the firstname and lastname fields of the application. The insertion of malicious queries in those fields leads to the execution of those queries. This can further lead to cookie stealing or other malicious actions.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-08-07 CVE Reserved
- 2019-08-07 CVE Published
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- 2024-12-28 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/154005/osTicket-1.12-Cross-Site-Scripting.html | Third Party Advisory | |
https://github.com/osTicket/osTicket/releases/tag/v1.10.7 | Release Notes | |
https://github.com/osTicket/osTicket/releases/tag/v1.12.1 | Release Notes |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/47226 | 2024-08-05 |
URL | Date | SRC |
---|---|---|
https://github.com/osTicket/osTicket/commit/c3ba5b78261e07a883ad8fac28c214486c854e12 | 2019-08-14 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Osticket Search vendor "Osticket" | Osticket Search vendor "Osticket" for product "Osticket" | < 1.10.7 Search vendor "Osticket" for product "Osticket" and version " < 1.10.7" | - |
Affected
| ||||||
Osticket Search vendor "Osticket" | Osticket Search vendor "Osticket" for product "Osticket" | >= 1.12 < 1.12.1 Search vendor "Osticket" for product "Osticket" and version " >= 1.12 < 1.12.1" | - |
Affected
|