CVE-2023-32225: SysAid On-Premises

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

Sysaid - CWE-434: Unrestricted Upload of File with Dangerous Type -  A malicious user with administrative privileges may be able to upload a dangerous filetype via an unspecified method.

Affected products

  • SysAid SysAid On-Premises: before 23.2.14 (fixed in 23.2.14)

Published 2023-07-30. Last modified 2026-06-17.