SysAid records
40 published records for vendor sysaid.
Researcher profile
- Entered KEV
- 3 · 7.5%
- Weaponized
- 9 · 22.5%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- 76 days
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')8
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-611 Improper Restriction of XML External Entity Reference4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')4
- CWE-434 Unrestricted Upload of File with Dangerous Type3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
The weakness classes this vendor ships most often: where to look.
CWEAll records
40 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
99Now | CVE-2023-47246Weaponized | In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat wesysaid · sysaid · CWE-22 | Critical9.8 | KEV | 98.9% | Nov 10, 2023 |
88Now | CVE-2025-2776Weaponized | SysAid On-Prem <= 23.3.40 serverurl Proceessing XML External Entity Injectionsysaid · sysaid · CWE-611 | Critical9.8 | KEV | 64.4% | May 7, 2025 |
73This week | CVE-2025-2775Weaponized | SysAid On-Prem <= 23.3.40 Checkin Proceessing XML External Entity Injectionsysaid · sysaid · CWE-611 | High7.5 | KEV | 43.0% | May 7, 2025 |
61This week | CVE-2025-2777Proof of concept | SysAid On-Prem <= 23.3.40 lshw Proceessing XML External Entity Injectionsysaid · sysaid · CWE-611 | Critical9.8 | — | 72.2% | May 7, 2025 |
60This week | CVE-2015-2996Weaponized | Multiple directory traversal vulnerabilities in SysAid Help Desk before 15.2 allow remote attackers to (1) read arbitrary files via a ..sysaid · sysaid · CWE-22 | High8.5 | — | 86.5% | Jun 8, 2015 |
47Plan | CVE-2015-2993Weaponized | SysAid Help Desk before 15.2 does not properly restrict access to certain functionality, which allows remote attackers to (1) create adminissysaid · sysaid · CWE-264 | High7.5 | — | 55.1% | Jun 8, 2015 |
41Plan | CVE-2015-2994Weaponized | Unrestricted file upload vulnerability in ChangePhoto.jsp in SysAid Help Desk before 15.2 allows remote administrators to execute arbitrary sysaid · sysaid | Medium6.5 | — | 49.8% | Jun 8, 2015 |
40Plan | CVE-2020-10569No exploit | SysAid On-Premise 20.1.11, by default, allows the AJP protocol port, which is vulnerable to a GhostCat attack.sysaid · on-premise · CWE-434 | Critical9.8 | — | 3.3% | Apr 21, 2020 |
39Monitor | CVE-2022-22796No exploit | Sysaid – Sysaid System Takeoversysaid · sysaid · CWE-287 | Critical9.8 | — | 1.4% | May 12, 2022 |
39Monitor | CVE-2022-23166No exploit | Sysaid – Sysaid Local File Inclusion (LFI)sysaid · sysaid · CWE-22 | Critical9.8 | — | 1.1% | May 12, 2022 |
39Monitor | CVE-2024-36394No exploit | SysAid - CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')sysaid · sysaid · CWE-78 | Critical9.8 | — | 1.1% | Jun 6, 2024 |
39Monitor | CVE-2022-23170No exploit | SysAid - Okta SSO integrationsysaid · okta sso · CWE-611 | Critical9.8 | — | 0.6% | Jun 24, 2022 |
39Monitor | CVE-2024-36393No exploit | SysAid - CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')sysaid · sysaid · CWE-89 | Critical9.8 | — | 0.4% | Jun 6, 2024 |
37Monitor | CVE-2015-2997Weaponized | SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAsysaid · sysaid · CWE-200 | Medium5.0 | — | 57.0% | Jun 8, 2015 |
37Monitor | CVE-2015-2995Weaponized | The RdsLogsEntry servlet in SysAid Help Desk before 15.2 does not properly check file extensions, which allows remote attackers to upload ansysaid · sysaid · CWE-22 | Medium6.8 | — | 33.6% | Jun 8, 2015 |
36Monitor | CVE-2021-43971No exploit | A SQL injection vulnerability in /mobile/SelectUsers.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker to execute arbitrsysaid · sysaid · CWE-89 | High8.8 | — | 1.7% | Jan 11, 2022 |
36Monitor | CVE-2021-43973No exploit | An unrestricted file upload vulnerability in /UploadPsIcon.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker to upload asysaid · sysaid · CWE-434 | High8.8 | — | 1.7% | Jan 11, 2022 |
35Monitor | CVE-2021-30486No exploit | SysAid 20.3.64 b14 is affected by Blind and Stacker SQL injection via AssetManagementChart.jsp (GET computerID), AssetManagementChart.jsp (Psysaid · sysaid · CWE-89 | High8.8 | — | 1.0% | Jul 22, 2021 |
35Monitor | CVE-2022-22798No exploit | Sysaid – Pro Plus Edition, SysAid Help Desk Broken Access Controlsysaid · sysaid | High8.8 | — | 0.6% | May 12, 2022 |
33Monitor | CVE-2015-3000Proof of concept | SysAid Help Desk before 15.2 allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of nested sysaid · sysaid · CWE-399 | High7.8 | — | 8.0% | Jun 8, 2015 |
28Monitor | CVE-2015-2998Weaponized | SysAid Help Desk before 15.2 uses a hardcoded encryption key, which makes it easier for remote attackers to obtain sensitive information, assysaid · sysaid · CWE-200 | Medium5.0 | — | 26.2% | Jun 8, 2015 |
28Monitor | CVE-2023-32225No exploit | Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Typesysaid · sysaid on-premises · CWE-434 | High7.2 | — | 0.6% | Jul 30, 2023 |
27Monitor | CVE-2015-2999Proof of concept | Multiple SQL injection vulnerabilities in SysAid Help Desk before 15.2 allow remote administrators to execute arbitrary SQL commands via thesysaid · sysaid · CWE-89 | Medium6.5 | — | 1.8% | Jun 8, 2015 |
26Monitor | CVE-2021-43972No exploit | An unrestricted file copy vulnerability in /UserSelfServiceSettings.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker tosysaid · sysaid | Medium6.5 | — | 1.5% | Jan 11, 2022 |
26Monitor | CVE-2023-33706No exploit | SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter to EmailHtmlSourceIfrsysaid · sysaid · CWE-639 | Medium6.5 | — | 0.6% | Nov 23, 2023 |
- CVE-2023-4724699Now
In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat we
CriticalCVSS 9.8KEVWeaponizedEPSS 99%sysaid · sysaidNov 10, 2023
- CVE-2025-277688Now
SysAid On-Prem <= 23.3.40 serverurl Proceessing XML External Entity Injection
CriticalCVSS 9.8KEVWeaponizedEPSS 64%sysaid · sysaidMay 7, 2025
- CVE-2025-277573This week
SysAid On-Prem <= 23.3.40 Checkin Proceessing XML External Entity Injection
HighCVSS 7.5KEVWeaponizedEPSS 43%sysaid · sysaidMay 7, 2025
- CVE-2025-277761This week
SysAid On-Prem <= 23.3.40 lshw Proceessing XML External Entity Injection
CriticalCVSS 9.8Proof of conceptEPSS 72%sysaid · sysaidMay 7, 2025
- CVE-2015-299660This week
Multiple directory traversal vulnerabilities in SysAid Help Desk before 15.2 allow remote attackers to (1) read arbitrary files via a ..
HighCVSS 8.5WeaponizedEPSS 87%sysaid · sysaidJun 8, 2015
- CVE-2015-299347Plan
SysAid Help Desk before 15.2 does not properly restrict access to certain functionality, which allows remote attackers to (1) create adminis
HighCVSS 7.5WeaponizedEPSS 55%sysaid · sysaidJun 8, 2015
- CVE-2015-299441Plan
Unrestricted file upload vulnerability in ChangePhoto.jsp in SysAid Help Desk before 15.2 allows remote administrators to execute arbitrary
MediumCVSS 6.5WeaponizedEPSS 50%sysaid · sysaidJun 8, 2015
- CVE-2020-1056940Plan
SysAid On-Premise 20.1.11, by default, allows the AJP protocol port, which is vulnerable to a GhostCat attack.
CriticalCVSS 9.8No exploitEPSS 3%sysaid · on-premiseApr 21, 2020
- CVE-2022-2279639Monitor
Sysaid – Sysaid System Takeover
CriticalCVSS 9.8No exploitEPSS 1%sysaid · sysaidMay 12, 2022
- CVE-2022-2316639Monitor
Sysaid – Sysaid Local File Inclusion (LFI)
CriticalCVSS 9.8No exploitEPSS 1%sysaid · sysaidMay 12, 2022
- CVE-2024-3639439Monitor
SysAid - CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CriticalCVSS 9.8No exploitEPSS 1%sysaid · sysaidJun 6, 2024
- CVE-2022-2317039Monitor
SysAid - Okta SSO integration
CriticalCVSS 9.8No exploitEPSS 1%sysaid · okta ssoJun 24, 2022
- CVE-2024-3639339Monitor
SysAid - CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CriticalCVSS 9.8No exploitEPSS 0%sysaid · sysaidJun 6, 2024
- CVE-2015-299737Monitor
SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getA
MediumCVSS 5.0WeaponizedEPSS 57%sysaid · sysaidJun 8, 2015
- CVE-2015-299537Monitor
The RdsLogsEntry servlet in SysAid Help Desk before 15.2 does not properly check file extensions, which allows remote attackers to upload an
MediumCVSS 6.8WeaponizedEPSS 34%sysaid · sysaidJun 8, 2015
- CVE-2021-4397136Monitor
A SQL injection vulnerability in /mobile/SelectUsers.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker to execute arbitr
HighCVSS 8.8No exploitEPSS 2%sysaid · sysaidJan 11, 2022
- CVE-2021-4397336Monitor
An unrestricted file upload vulnerability in /UploadPsIcon.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker to upload a
HighCVSS 8.8No exploitEPSS 2%sysaid · sysaidJan 11, 2022
- CVE-2021-3048635Monitor
SysAid 20.3.64 b14 is affected by Blind and Stacker SQL injection via AssetManagementChart.jsp (GET computerID), AssetManagementChart.jsp (P
HighCVSS 8.8No exploitEPSS 1%sysaid · sysaidJul 22, 2021
- CVE-2022-2279835Monitor
Sysaid – Pro Plus Edition, SysAid Help Desk Broken Access Control
HighCVSS 8.8No exploitEPSS 1%sysaid · sysaidMay 12, 2022
- CVE-2015-300033Monitor
SysAid Help Desk before 15.2 allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of nested
HighCVSS 7.8Proof of conceptEPSS 8%sysaid · sysaidJun 8, 2015
- CVE-2015-299828Monitor
SysAid Help Desk before 15.2 uses a hardcoded encryption key, which makes it easier for remote attackers to obtain sensitive information, as
MediumCVSS 5.0WeaponizedEPSS 26%sysaid · sysaidJun 8, 2015
- CVE-2023-3222528Monitor
Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Type
HighCVSS 7.2No exploitEPSS 1%sysaid · sysaid on-premisesJul 30, 2023
- CVE-2015-299927Monitor
Multiple SQL injection vulnerabilities in SysAid Help Desk before 15.2 allow remote administrators to execute arbitrary SQL commands via the
MediumCVSS 6.5Proof of conceptEPSS 2%sysaid · sysaidJun 8, 2015
- CVE-2021-4397226Monitor
An unrestricted file copy vulnerability in /UserSelfServiceSettings.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attacker to
MediumCVSS 6.5No exploitEPSS 1%sysaid · sysaidJan 11, 2022
- CVE-2023-3370626Monitor
SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter to EmailHtmlSourceIfr
MediumCVSS 6.5No exploitEPSS 1%sysaid · sysaidNov 23, 2023