Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfq3-8xp6-5mj3

Опубликовано: 12 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Zoho ManageEngine ServiceDesk Plus MSP before 10609 and SupportCenter Plus before 11025 are vulnerable to privilege escalation. This allows users to obtain sensitive data during an export of requests from the list view.

Zoho ManageEngine ServiceDesk Plus MSP before 10609 and SupportCenter Plus before 11025 are vulnerable to privilege escalation. This allows users to obtain sensitive data during an export of requests from the list view.

EPSS

Процентиль: 76%
0.00929
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-863

Связанные уязвимости

CVSS3: 8.8
nvd
около 3 лет назад

Zoho ManageEngine ServiceDesk Plus MSP before 10609 and SupportCenter Plus before 11025 are vulnerable to privilege escalation. This allows users to obtain sensitive data during an exportMickeyList export of requests from the list view.

EPSS

Процентиль: 76%
0.00929
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-863