Back

CVE-2005-1439

Directory traversal vulnerability in attachments.php in osTicket allows remote attackers to read arbitrary files via .. sequences in the file parameter.

Published: May 3, 2005 Modified: Jul 10, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
enhancesoft osticket *

GitHub Security Advisory GHSA-j828-99vg-fjx3

Directory traversal vulnerability in attachments.php in osTicket allows remote attackers to read...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.72%

Top 24% most likely to be exploited

Threat Score 30.5 / 100

Data Sources

NVD EPSS GitHub