Количество 2
Количество 2
CVE-2023-29443
Zoho ManageEngine ServiceDesk Plus before 14105, ServiceDesk Plus MSP before 14200, SupportCenter Plus before 14200, and AssetExplorer before 6989 allow SDAdmin attackers to conduct XXE attacks via a crafted server that sends malformed XML from a Reports integration API endpoint.
GHSA-h7wh-8cwv-qqm6
Zoho ManageEngine ServiceDesk Plus through 14104 allows admin users to conduct an XXE attack.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-29443 Zoho ManageEngine ServiceDesk Plus before 14105, ServiceDesk Plus MSP before 14200, SupportCenter Plus before 14200, and AssetExplorer before 6989 allow SDAdmin attackers to conduct XXE attacks via a crafted server that sends malformed XML from a Reports integration API endpoint. | CVSS3: 4.9 | 1% Низкий | почти 3 года назад | |
GHSA-h7wh-8cwv-qqm6 Zoho ManageEngine ServiceDesk Plus through 14104 allows admin users to conduct an XXE attack. | CVSS3: 4.9 | 1% Низкий | почти 3 года назад |
Уязвимостей на страницу