CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Sysaid - CWE-552: Files or Directories Accessible to External Parties -
Authenticated users may exfiltrate files from the server via an unspecified method.
|
Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Type -
A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method.
|
1Sysaid 2Sysaid On Premises Sysaidsy On PremisesNov 21, 2024 Oct 2, 2020 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 SysAid 20.1.11b26 allows reflected XSS via the ForgotPassword.jsp accountid parameter. |