CVE-2021-45811
18Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 2.5%
probabilidad de explotación
2.5%top 17% de las CVE
explotación observada
noninguna fuente lo reporta
A SQL injection vulnerability in the "Search" functionality of "tickets.php" page in osTicket 1.15.x allows authenticated attackers to execute arbitrary SQL commands via the "keywords" and "topic_id" URL parameters combination.
Productos afectados
n/a · n/a