osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly validate the uploaded file's contents and thus accepts any type of file, such as with a tickets.php request that is modified with a .html extension changed to a .exe extension. An attacker can leverage this vulnerability to upload arbitrary files on the web application having malicious content.
References
Configurations
History
No history.
Information
Published : 2017-10-23 08:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-15580
Mitre link : CVE-2017-15580
CVE.ORG link : CVE-2017-15580
JSON object : View
Products Affected
osticket
- osticket
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type