Vulnerability Description
An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x extension that provides Joomla fronted integration with osTicket, a popular Support ticket system. The Open Redirect vulnerability allows attackers to control the return parameter in the URL to a base64 malicious URL.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Smartcalc | Osticky | < 2.2.8 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2024-21728?
CVE-2024-21728 is a vulnerability with a CVSS score of 6.1 (MEDIUM). An Open Redirect vulnerability was found in osTicky2 below 2.2.8. osTicky (osTicket Bridge) by SmartCalc is a Joomla 3.x extension that provides Joomla fronted integration with osTicket, a popular Sup...
How severe is CVE-2024-21728?
CVE-2024-21728 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-21728?
Check the references section above for vendor advisories and patch information. Affected products include: Smartcalc Osticky.