CVE-2020-14012
scp/categories.php in osTicket 1.14.2 allows XSS via a Knowledgebase Category Name or Category Description. The attacker
scp/categories.php in osTicket 1.14.2 allows XSS via a Knowledgebase Category Name or Category Description. The attacker must be an Agent.
MEDIUM · CVSS 5.4
EPSS 0.00191
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0