Back

CVE-2005-2154

PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta and earlier allows remote attackers to include and possibly execute arbitrary local files via the inc parameter.

Published: Jul 6, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
osticket osticket_sts 1.2
osticket osticket_sts 1.2.7
osticket osticket_sts 1.3_beta

GitHub Security Advisory GHSA-g2hv-fr8c-5pq5

PHP local file inclusion vulnerability in (1) view.php and (2) open.php in osTicket 1.3.1 beta...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.44%

Top 17% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub