Unrated severityNVD Advisory· Published Jul 6, 2005· Updated Apr 16, 2026
CVE-2005-2154
CVE-2005-2154
Description
PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local files via the inc parameter.
Affected products
3cpe:2.3:a:osticket:osticket_sts:1.2:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:osticket:osticket_sts:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:osticket:osticket_sts:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:osticket:osticket_sts:1.3_beta:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- seclists.org/lists/bugtraq/2005/Jul/0009.htmlnvdExploitVendor Advisory
- securitytracker.com/idnvdExploit
- www.securityfocus.com/bid/14127nvdExploit
News mentions
0No linked articles in our index yet.