Filtered by vendor Enhancesoft
Subscribe
Total
22 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2020-12629 | 1 Enhancesoft | 1 Osticket | 2024-11-21 | 3.5 LOW | 5.4 MEDIUM |
include/class.sla.php in osTicket before 1.14.2 allows XSS via the SLA Name. | |||||
CVE-2019-13397 | 1 Enhancesoft | 1 Osticket | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
Unauthenticated Stored XSS in osTicket 1.10.1 allows a remote attacker to gain admin privileges by injecting arbitrary web script or HTML via arbitrary file extension while creating a support ticket. |