Zoho ManageEngine ServiceDesk Plus MSP before 10.5 Build 10534 is vulnerable to unauthenticated remote code execution due to a filter bypass in which authentication is not required.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-12-20 07:15
Updated : 2022-01-03 12:21
NVD link : CVE-2021-44675
Mitre link : CVE-2021-44675
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
zohocorp
- manageengine_servicedesk_plus_msp