CVE-2015-2994

SysAid Help Desk <15.2 - RCE

Title source: llm

Description

Unrestricted file upload vulnerability in ChangePhoto.jsp in SysAid Help Desk before 15.2 allows remote administrators to execute arbitrary code by uploading a file with a .jsp extension, then accessing it via a direct request to the file in icons/user_photo/.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubywebappsmultiple
https://www.exploit-db.com/exploits/41691
exploitdb WRITEUP
webappshardware
https://www.exploit-db.com/exploits/43885
metasploit WORKING POC EXCELLENT
rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/sysaid_auth_file_upload.rb

Scores

EPSS 0.7686
EPSS Percentile 99.0%

Details

Status published
Products (1)
sysaid/sysaid < 15.1
Published Jun 08, 2015
Tracked Since Feb 18, 2026