CVE-2021-42235
04.05.2022, 17:15
SQL injection in osTicket before 1.14.8 and 1.15.4 login and password reset process allows attackers to access the osTicket administration profile functionality.
Vendor | Product | Version |
---|---|---|
enhancesoft | osticket | 𝑥 < 1.14.8 |
enhancesoft | osticket | 1.15 ≤ 𝑥 < 1.15.4 |
𝑥
= Vulnerable software versions