|
|||||||
| osTicket SVA-2009-624 | ||||
|---|---|---|---|---|
| Blind SQL injection | ||||
Category Unknown |
Affected Version 1.6 rc4 |
Priority 1 - Highest |
||
Status fixed |
Fixed Version 1.6 rc5 |
|||
Submitted 06-26-2009 |
||||
|
||||
|
|
|
|
|
|
osTicket SVA-2009-624
Blind SQL injection
osTicket prior to v1.6 RC5 fails to properly handle or/and escape staff's usernames. This could potentially allow an attacker to carry out a blind SQL injection. The security risk is moderately critical and for this reason we strongly recommend upgrading to the latest version (osTicket v1.6 RC5) as soon as possible. If you are unable to upgrade immediately, you should patch your current installation until you are able to do a complete upgrade.
Below are instructions on how to temporarily patch osTicket v1.6 RC1-RC4; * In include/class.staff.php line 41 chage PHP Code:
PHP Code:
change PHP Code:
PHP Code:
Credit: Adam Baldwin @ nGenuity - thank you for giving us generous time to release the fix |
|
|
| Issue Changed by peter |
|
|
|
| Issue Changed by peter |
|
![]() |
| Issue Tools |
|---|
Subscribe to this issue |