ZeroHour

CVE-2022-35403

CVSS 3.1
7.5 high
EPSS
6%p93
Published
()
Modified
Description

Zoho ManageEngine ServiceDesk Plus before 13008, ServiceDesk Plus MSP before 10606, and SupportCenter Plus before 11022 are affected by an unauthenticated local file disclosure vulnerability via ticket-creation email. (This also affects Asset Explorer before 6977 with authentication.)

Vendors
zohocorp
Products
manageengine servicedesk plus, manageengine servicedesk plus msp, manageengine supportcenter plus, manageengine assetexplorer
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.