vendor:
osTicket
by:
Nahuel Grisolía
7.5
CVSS
HIGH
SQL injection
89
CWE
Product Name: osTicket
Affected Version From: osTicket 1.6 RC5
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested: Multiple
2010
SQL injection in osTicket
A vulnerability has been discovered in osTicket, which can be exploited by malicious people to conduct SQL injection attacks. Input passed via the "input" parameter to ajax.php is not properly sanitized before being used in a SQL query. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code. The vulnerability is confirmed in version 1.6 RC5. Other versions may also be affected.
Mitigation:
Upgrade to osTicket 1.6 Stable or check http://osticket.com/forums/project.php?issueid=176