Security Advisory

CVE-2020-16193

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-08-26 12:00:17
Last updated 2024-08-04 13:37:54
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

osTicket before 1.14.3 allows XSS because include/staff/banrule.inc.php has an unvalidated echo $info['notes'] call.