CVE-2017-14396

CRITICAL

osTicket - SQL Injection via Array Parameter Syntax

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-14396. PoCs published by Mehmet Ince.

AI-analyzed exploit summary The provided code is a SQLmap command to exploit an unauthenticated SQL injection vulnerability in osTicket v1.10. It leverages a crafted URL to inject SQL queries into the database system.

Description

In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to file.php.

Exploits (1)

exploitdb SCANNER
by Mehmet Ince · textwebappsphp
https://www.exploit-db.com/exploits/42660

The provided code is a SQLmap command to exploit an unauthenticated SQL injection vulnerability in osTicket v1.10. It leverages a crafted URL to inject SQL queries into the database system.

Classification
Scanner 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: osTicket <= v1.10
No auth needed
Prerequisites: Target URL with vulnerable osTicket installation
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Patch, Vendor Advisory x_refsource_confirm
http://www.osticket.com/blog/125

Scores

CVSS v3 9.8
EPSS 0.0292
EPSS Percentile 85.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (1)
osticket/osticket 1.10
Published Sep 12, 2017
Tracked Since Feb 18, 2026