CVE-2023-27149
23.10.2023, 20:15
A stored cross-site scripting (XSS) vulnerability in Enhancesoft osTicket v1.17.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Label input parameter when updating a custom list.
Vendor | Product | Version |
---|---|---|
enhancesoft | osticket | 1.17.2 |
𝑥
= Vulnerable software versions