CVE-2023-1316: Cross-site Scripting (XSS) - Stored in osticket/osticket
Published Mar 10, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.
Affected Software
1 affected component
Enhancesoft osTicket<1.16.6
Remediation
Event History
Mar 10, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-1316?
CVE-2023-1316 is a vulnerability that allows for cross-site scripting (XSS) attacks.
2
What is the severity of CVE-2023-1316?
The severity of CVE-2023-1316 is medium with a CVSS score of 5.4.
3
How was CVE-2023-1316 discovered?
CVE-2023-1316 was discovered in the GitHub repository osticket/osticket prior to v1.16.6.
4
How does CVE-2023-1316 affect Enhancesoft osTicket?
CVE-2023-1316 affects Enhancesoft osTicket versions up to and excluding v1.16.6.
5
How can I fix CVE-2023-1316?
To fix CVE-2023-1316, update osticket/osticket to version 1.16.6 or later.