Cross-Site Scripting Vulnerability in SysAid Help Desk Software
CVE-2022-40322
6.1MEDIUM
What is CVE-2022-40322?
The SysAid Help Desk software prior to version 22.1.65 is susceptible to Cross-Site Scripting (XSS) vulnerabilities as identified in reports FR# 66542 and 65579. This weakness permits attackers to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized actions or exposure of sensitive information. Users of affected versions are strongly encouraged to upgrade to the latest release to mitigate this risk.