Back

CRITICAL

Sysaid – Sysaid System Takeover

Published May 12, 2022

Description

Sysaid – Sysaid System Takeover - An attacker can bypass the authentication process by accessing to: /wmiwizard.jsp, Then to: /ConcurrentLogin.jsp, then click on the login button, and it will redirect you to /home.jsp without any authentication.

Affected products

Remediation

Vendor solution

Update to 21.1.30 cloud version, or to 21.4.45 on premise version.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCD
Published May 12, 2022
Updated Sep 17, 2024
Reserved Jan 7, 2022
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner INCD
Published May 12, 2022
Updated Sep 17, 2024
Exploited since n/a
EUVD-2022-27939