Skip to main content

CVE-2015-2998

CVSS Score Not Available
62.16%
MEDIUM RiskEPSS (98th percentile)

SysAid Help Desk before 15.2 uses a hardcoded encryption key, which makes it easier for remote attackers to obtain sensitive information, as demonstrated by decrypting the database password in WEB-INF/conf/serverConf.xml.

Published: 6/8/2015
Modified: 4/12/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

62.16%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 62.16% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.