Absolute path traversal vulnerability in SysAid On-Premise prior to 14.4.2 allows remote malicious users to read arbitrary files via a \\\\ (four backslashes) in the fileName parameter to getRdsLogFile.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sysaid sysaid |