Vulnerability Details CVE-2005-2154
PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local files via the inc parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.2%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2005-2154
-
cpe:2.3:a:osticket:osticket_sts:1.2
-
cpe:2.3:a:osticket:osticket_sts:1.2.7
-
cpe:2.3:a:osticket:osticket_sts:1.3_beta