9.8
CVSSv3

CVE-2020-24881

Published: 02/11/2020 Updated: 30/01/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SSRF exists in osTicket prior to 1.14.3, where an attacker can add malicious file to server or perform port scanning.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

osticket osticket

Exploits

osTicket 1142 suffers from a server-side request forgery vulnerability ...