CVE Vulnerabilities

CVE-2005-2154

Published: Jul 06, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local files via the inc parameter.

Affected Software

NameVendorStart VersionEnd Version
Osticket_stsOsticket1.2 (including)1.2 (including)
Osticket_stsOsticket1.2.7 (including)1.2.7 (including)
Osticket_stsOsticket1.3_beta (including)1.3_beta (including)

References