Description
SQL injection in osTicket before 1.14.8 and 1.15.4 login and password reset process allows attackers to access the osTicket administration profile functionality.
Remediation
References
Related Vulnerabilities
WordPress Plugin Wp Multiple Meta Box SQL Injection (1.0.0)
WordPress 3.7.x Prototype Pollution (3.7 - 3.7.37)
WordPress Plugin Ecommerce-Two Factor Authentication Cross-Site Scripting (1.0.4)
WordPress Plugin WP Debugging Security Bypass (2.10.2)
WordPress Plugin WP Maps-Display Google Maps Perfectly with Ease Cross-Site Scripting (4.0.3)