296,336
Total vulnerabilities in the database
SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.
Software | From | Fixed in |
---|---|---|
sysaid / sysaid | - | 15.1.x |