CVE-2019-14750
MEDIUM NUCLEIosTicket < 1.10.7 and 1.12.x < 1.12.1 - Stored Cross-Site Scripting in Installer Firstname/Lastname Fields
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-14750. PoCs published by Aishwarya Iyer. A Nuclei detection template is also available.
AI-analyzed exploit summary This is a writeup describing a stored XSS vulnerability in osTicket before 1.10.7 and 1.12.x before 1.12.1. The vulnerability allows malicious scripts to be stored in the firstname and lastname fields during setup, leading to execution when accessed.
Description
An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. Stored XSS exists in setup/install.php. It was observed that no input sanitization was provided in the firstname and lastname fields of the application. The insertion of malicious queries in those fields leads to the execution of those queries. This can further lead to cookie stealing or other malicious actions.
Exploits (1)
This is a writeup describing a stored XSS vulnerability in osTicket before 1.10.7 and 1.12.x before 1.12.1. The vulnerability allows malicious scripts to be stored in the firstname and lastname fields during setup, leading to execution when accessed.
Nuclei Templates (1)
title:"osTicket" || http.title:"osticket" || http.html:"powered by osticket" || http.title:"osticket installer"
title="osticket" || body="powered by osticket" || title="osticket installer"
References (5)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N