ZeroHour

CVE-2023-23078

CVSS 3.1
6.1 medium
EPSS
3%p86
Published
()
Modified
Description

Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via the comment field when changing the credentials in the Assets.

Vendors
zohocorp
Products
manageengine servicedesk plus
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.