CVE-2005-2153 Information

Description

SQL injection vulnerability in class.ticket.php in osTicket 1.3.1 beta and earlier allows remote attackers to execute arbitrary SQL commands via the ticket variable.

Reference

http://seclists.org/lists/bugtraq/2005/Jul/0009.html http://securitytracker.com/id?1014373 http://www.securityfocus.com/bid/14127

Share on: