CVE-2024-27775: SysAid

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

SysAid before version 23.2.14 b18 - CWE-918: Server-Side Request Forgery (SSRF) may allow exposing the local OS user's NTLMv2 hash

Affected products

Published 2024-03-28. Last modified 2026-06-17.