📦 Manageengine Servicedesk Plus Msp

by Zohocorp

🔍 What is Manageengine Servicedesk Plus Msp?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-44077

CRITICAL CVSS 9.8 Nov 29, 2021

CVE-2021-44077 is an unauthenticated remote code execution vulnerability in Zoho ManageEngine products. Attackers can exploit this via specific REST API endpoints to execute arbitrary code without cre...

CVE-2021-31531

CRITICAL CVSS 9.8 Jun 29, 2021

This Server-Side Request Forgery (SSRF) vulnerability in Zoho ManageEngine ServiceDesk Plus MSP allows attackers to make unauthorized requests from the vulnerable server to internal or external system...

CVE-2024-38869

HIGH CVSS 8.3 Aug 23, 2024

This vulnerability allows attackers to bypass authorization controls in ManageEngine Endpoint Central's remote office deployment configurations. Attackers could potentially modify deployment settings ...

CVE-2022-35403

HIGH CVSS 7.5 Jul 12, 2022

This vulnerability allows unauthenticated attackers to read local files on Zoho ManageEngine servers via specially crafted ticket-creation emails. It affects ServiceDesk Plus, ServiceDesk Plus MSP, Su...

CVE-2021-31160

HIGH CVSS 7.5 Jun 29, 2021

This vulnerability in Zoho ManageEngine ServiceDesk Plus MSP allows attackers to access internal data without proper authentication. It affects organizations using ServiceDesk Plus MSP for IT service ...