CVE-2015-2997
CVSS Score Not Available
80.83%
HIGH RiskEPSS (99th percentile)
SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAgentLogFile, as demonstrated by a large directory traversal sequence, which reveals the installation path in an error message.
Published: 6/8/2015
Modified: 4/12/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
80.83%HIGH Exploitation Risk
99th percentile
This vulnerability has a 80.83% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.