ZeroHour

CVE-2023-26600

CVSS 3.1
6.5 medium
EPSS
6%p93
Published
()
Modified
Description

ManageEngine ServiceDesk Plus through 14104, ServiceDesk Plus MSP through 14000, Support Center Plus through 14000, and Asset Explorer through 6987 allow privilege escalation via query reports.

Vendors
zohocorp
Products
manageengine assetexplorer, manageengine servicedesk plus, manageengine servicedesk plus msp, manageengine supportcenter plus
Weakness
CWE-269
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.