SysAid Technologies (formerly Ilient) is an international company founded in 2002 that develops and provides IT Service Management software. SysAid Technologies is a privately owned company, founded by Israel Lifshitz (also founder of NUBO Software). SysAID Help Desk System v20.3.64 b14. The exploitation of vulnerability requires having user-level access in the system. From the "Asset... Leer más →
SysAID – XSS [CVE-2021-30049]
SysAid Technologies (formerly Ilient) is an international company founded in 2002 that develops and provides IT Service Management software. SysAid Technologies is a privately owned company, founded by Israel Lifshitz (also founder of NUBO Software). SysAID Help Desk System v20.3.64 b14. Every so often the application verifies the validation of the session through the KeepAlive.jsp... Leer más →
¿Y si le meto un comando en la página web, se ejecutará dentro del servidor?
¡Claro, comando ... command ... si! veremos Command Injection... Lograr ejecutar comandos en la máquina de nuestra víctima es algo genial, más aún cuando este es un servidor web, el cual tiene una aplicación importante, la que debería tener una red importante tras de esta. Veamos la definición: La inyección de comandos es un ataque... Leer más →
