Логотип exploitDog
bind:CVE-2015-2997
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-2997

Количество 2

Количество 2

nvd логотип

CVE-2015-2997

больше 10 лет назад

SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.

CVSS2: 5
EPSS: Высокий
github логотип

GHSA-76mr-hhhx-xpg8

больше 3 лет назад

SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2015-2997

SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.

CVSS2: 5
81%
Высокий
больше 10 лет назад
github логотип
GHSA-76mr-hhhx-xpg8

SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.

81%
Высокий
больше 3 лет назад

Уязвимостей на страницу