Description
In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can appear in an error message. The XSS can lead to local file inclusion.
Remediation
References
Related Vulnerabilities
WordPress Plugin YITH WooCommerce Multi Vendor Cross-Site Scripting (3.8.0)
WordPress 4.9.x Multiple Vulnerabilities (4.9 - 4.9.16)
WordPress Plugin WP SVG Icons Cross-Site Request Forgery (3.2.1)
Apache HTTP Server Out-of-bounds Read Vulnerability (CVE-2007-3847)
WordPress Plugin ACF Frontend display Arbitrary File Upload (2.0.5)