SysAid Server < 23.3.36 Path Traversal

critical Nessus Plugin ID 185896

Version 1.5

Oct 23, 2024, 3:47 PM

  • Plugin metadata (update thorough_tests attribute)

Plugin Feed: 202410231547

Version 1.4

Dec 11, 2023, 4:04 PM

  • Exploit attributes ("Exploit framework core" set to "True")

Plugin Feed: 202312111604

Version 1.3

Nov 17, 2023, 5:24 PM

  • CISA reference

Plugin Feed: 202311171724

Version 1.3

Dec 11, 2023, 2:00 PM

  • Exploit attributes ("Exploit framework core" set to "True")

Plugin Feed: 202312111400

Version 1.2

Nov 17, 2023, 3:11 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True". "Exploitability ease" set to "Exploits are available")
  • IAVM reference
  • STIG Severity (set to "I")

Plugin Feed: 202311171511

Version 1.0

Nov 16, 2023, 7:01 PM

  • New

Plugin Feed: 202311161901

Version 1.0

Nov 17, 2023, 12:59 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploitability ease" set to "Exploits are available")

Plugin Feed: 202311171259

* Changelogs are generally available for changes made after Nov 1, 2022