Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Osticket

First CVE: Dec 6, 2004Active for: 22 yearsTotal CVEs: 13
44.0
VTI Score
High

Osticket is a modestly represented open-source help-desk and ticketing platform that, despite a narrow product footprint, maintains significant visibility in the vulnerability landscape owing to its widespread adoption across small-to-medium organizations and service providers. Vulnerabilities affecting the vendor skew toward application-layer input and file-handling flaws, with a notable share reaching critical severity and a pronounced tendency to acquire public exploit code. The exposure recurs across the core Osticket product and its support ticketing suite through weakness classes including cross-site scripting, SQL injection, unrestricted file upload, and path traversal—classic web-application vectors that reflect the product's role as a user-facing, internet-accessible service. Defenders should prioritize patching this vendor's releases given the exploitation readiness of its disclosed flaws and the direct exposure of ticketing systems to both authenticated and unauthenticated attack surfaces. Current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
13
Total CVEs
More Total CVEs than 94% of tracked vendors
1.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 74% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Osticket over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 6, 2004
21 years ago
Most Recent CVE
Jun 2, 2025
417 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (13 CVEs).

13 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-15580CRITICAL
osTicket 1.10.1 provides a functionality to upload 'html' files with associated formats. However, it does not properly validate the uploaded file's contents and thus accepts any ty
Oct 23, 20179.850NOYES
CVE-2017-14396CRITICAL
In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to fil
Sep 12, 20179.841NOYES
CVE-2004-0613HIGH
osTicket allows remote attackers to view sensitive uploaded files and possibly execute arbitrary code via an HTTP request that uploads a PHP file to the ticket attachments director
Dec 6, 20047.532NOYES
CVE-2010-0605HIGH
SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the i
Feb 11, 20107.531NOYES
CVE-2005-2154HIGH
PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local f
Jul 6, 20057.528NOYES
CVE-2006-6733MEDIUM
Cross-site scripting (XSS) vulnerability in support/view.php in Support Cards 1 (osTicket) allows remote attackers to inject arbitrary web script or HTML via the e parameter.
Dec 26, 20064.321NOYES
CVE-2017-15362MEDIUM
osTicket 1.10.1 allows arbitrary client-side JavaScript code execution on victims who click a crafted support/scp/tickets.php?status= link, aka XSS. Session ID and data theft may f
Oct 16, 20176.120NONO
CVE-2005-2153HIGH
SQL injection vulnerability in class.ticket.php in osTicket 1.3.1 beta and earlier allows remote attackers to execute arbitrary SQL commands via the ticket variable.
Jul 6, 20057.519NONO
CVE-2005-1437HIGH
Multiple SQL injection vulnerabilities in osTicket allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to admin.php or (2) cat parameter to view.php.
May 3, 20057.519NONO
CVE-2005-1438HIGH
PHP remote file inclusion vulnerability in main.php in osTicket allows remote attackers to execute arbitrary PHP code via the include_dir parameter.
May 3, 20057.519NONO
View all 13 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products13 CVEs
31%
46%
15%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network4 (30.8%)
Unknown9 (69.2%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (30.8%)
High0 (0.0%)
Unknown9 (69.2%)
User Interaction
None2 (15.4%)
Unknown9 (69.2%)
Required2 (15.4%)
Privileges Required
Low1 (7.7%)
High0 (0.0%)
None3 (23.1%)
Unknown9 (69.2%)

Exploit Exposure

Signals from CVEs in this vendor scope (13 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
6 CVEs
46.2% of CVEs· 81st percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Osticket.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Osticket — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Osticket's Products

View all 1 CNAs →

Top CWEs