Total vulnerabilities in the database
SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.
Software | From | Fixed in |
---|---|---|
osticket / osticket | 1.6-rc1 | 1.6-rc1.x |
osticket / osticket | - | 1.6.x |
osticket / osticket | 1.6-rc3 | 1.6-rc3.x |
osticket / osticket | 1.2.7 | 1.2.7.x |
osticket / osticket | 1 | 1.x |
osticket / osticket | 1.6-rc4 | 1.6-rc4.x |
osticket / osticket | 1.6-rc2 | 1.6-rc2.x |
osticket / osticket | 1.3.0 | 1.3.0.x |