CVE-2024-21728

Vulnérabilités

CVE-2024-21728

An Open Redirect vulnerability was found in osTicky2 below 2.2.8.

MEDIUM osTicky Composant Source officielle

An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x extension that provides Joomla fronted integration with osTicket, a popular Support ticket system. The Open Redirect vulnerability allows attackers to control the return parameter in the URL to a base64 malicious URL.

6.1 Moyenne · CVSS 3.1

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDMEDIUM 6.1 (v3.1)
Produit
osTicky
Type
Composant
Corrigée dans
2.2.8
Publiée
15/02/2024
Modifiée
17/06/2026
CWE
CWE-601
  • com_osticky — 2.0.0 – 2.2.8
  • osticky — jusqu'à 2.2.8 (exclue)

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC