📦 Manageengine Supportcenter Plus

by Zohocorp

🔍 What is Manageengine Supportcenter Plus?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-23076

CRITICAL CVSS 9.8 Feb 1, 2023

CVE-2023-23076 is a critical OS command injection vulnerability in ManageEngine Support Center Plus that allows attackers to execute arbitrary commands on the underlying operating system. This affects...

CVE-2021-44077

CRITICAL CVSS 9.8 Nov 29, 2021

CVE-2021-44077 is an unauthenticated remote code execution vulnerability in Zoho ManageEngine products. Attackers can exploit this via specific REST API endpoints to execute arbitrary code without cre...

CVE-2024-38869

HIGH CVSS 8.3 Aug 23, 2024

This vulnerability allows attackers to bypass authorization controls in ManageEngine Endpoint Central's remote office deployment configurations. Attackers could potentially modify deployment settings ...

CVE-2022-35403

HIGH CVSS 7.5 Jul 12, 2022

This vulnerability allows unauthenticated attackers to read local files on Zoho ManageEngine servers via specially crafted ticket-creation emails. It affects ServiceDesk Plus, ServiceDesk Plus MSP, Su...

CVE-2021-43296

HIGH CVSS 7.5 Nov 30, 2021

This vulnerability allows attackers to perform Server-Side Request Forgery (SSRF) attacks through the ActionExecutor component in Zoho ManageEngine SupportCenter Plus. Attackers can make the vulnerabl...