Description
In osTicket before 1.10.1, SQL injection is possible by constructing an array via use of square brackets at the end of a parameter name, as demonstrated by the key parameter to file.php.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Support Plus Responsive Ticket System Cross-Site Scripting (9.1.1)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3391)
Python Files or Directories Accessible to External Parties Vulnerability (CVE-2019-13404)
ownCloud Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-1963)