GHSA-f4h3-3557-hgppMediumCVSS 6.1
osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in...
🔗 CVE IDs covered (1)
📋 Description
osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in include/ajax.draft.php.
🔗 References (6)
- https://nvd.nist.gov/vuln/detail/CVE-2020-24917
- https://github.com/osTicket/osTicket/commit/518de223933eab0c5558741ce317f36958ef193d
- https://github.com/osTicket/osTicket/compare/v1.14.2...v1.14.3
- https://sisl.lab.uic.edu/projects/chess
- https://sisl.lab.uic.edu/projects/chess/osticket-xss
- https://github.com/advisories/GHSA-f4h3-3557-hgpp