Skip to content

Known CVE

osTicket < 1.10.2 - Cross-Site Scripting

Cross-site scripting (XSS) vulnerability in /ajax.php/form/help-topic in Enhancesoft osTicket before 1.10.2 allows remote attackers to inject arbitrary web script or HTML via the "message" parameter.

CVE-2018-7192

Medium2018CVSS 6.1CWE-79

cve2018 · osticket · xss · authenticated · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website