CVE-2023-33706
SysAid Server vulnerability analysis and mitigation

Overview

SysAid Help Desk before version 23.2.15 contains an Insecure Direct Object Reference (IDOR) vulnerability that allows authenticated users to read ticket data by manipulating the sid parameter in EmailHtmlSourceIframe.jsp or the srID parameter in ShowMessage.jsp. The vulnerability affects both SysAid Help Desk On-Premise versions before 23.2.15 and Cloud versions before 23.2.50 (NIST NVD, PRIDE Security).

Technical details

The vulnerability exists in the ticket management system's message viewing functionality. When a user attempts to view messages in a ticket, the application makes requests to two endpoints: /ShowMessage.jsp and /EmailHtmlSourceIframe.jsp. The srID parameter in ShowMessage.jsp and sid parameter in EmailHtmlSourceIframe.jsp can be manipulated to access tickets belonging to other users, as the application fails to properly validate access permissions. The vulnerability has been assigned a CVSS v3.1 base score of 6.5 (Medium) with vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N (NIST NVD).

Impact

By exploiting this vulnerability, an authenticated attacker with requester-level access can view all tickets on the platform, including those they should not have access to. This could lead to unauthorized access to sensitive information exchanged between requesters and administrative users, including confidential data, communications, logins, passwords, tokens, and documents that may have been shared during ticket resolution (PRIDE Security).

Mitigation and workarounds

SysAid Technologies has released patched versions to address this vulnerability. Users of SysAid Help Desk On-Premise should upgrade to version 23.2.15 or later, while Cloud users should ensure they are running version 23.2.50 or later (NIST NVD, PRIDE Security).

Additional resources


SourceThis report was generated using AI

Related SysAid Server vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-2777CRITICAL9.8
  • SysAid ServerSysAid Server
  • cpe:2.3:a:sysaid:sysaid
NoYesMay 07, 2025
CVE-2025-2776CRITICAL9.8
  • SysAid ServerSysAid Server
  • cpe:2.3:a:sysaid:sysaid
YesYesMay 07, 2025
CVE-2024-36394CRITICAL9.8
  • SysAid ServerSysAid Server
  • cpe:2.3:a:sysaid:sysaid
NoYesJun 06, 2024
CVE-2024-36393CRITICAL9.8
  • SysAid ServerSysAid Server
  • cpe:2.3:a:sysaid:sysaid
NoYesJun 06, 2024
CVE-2025-2775HIGH7.5
  • SysAid ServerSysAid Server
  • cpe:2.3:a:sysaid:sysaid:*:*:*:*:on-premises:*:*:*
YesYesMay 07, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management