← Back

CVE-2021-44675

nvd nist
Published: Dec 20, 2021Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Zoho ManageEngine ServiceDesk Plus MSP before 10.5 Build 10534 is vulnerable to unauthenticated remote code execution due to a filter bypass in which authentication is not required.

Affected (35)

1 product
Manageengine Servicedesk Plus Msp
Configuration A
35 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Up to 10.5
Version 10.5 10500
Version 10.5 10501
Version 10.5 10502
Version 10.5 10503
Version 10.5 10504
Version 10.5 10505
Version 10.5 10506
Version 10.5 10507
Version 10.5 10508
Version 10.5 10509
Version 10.5 10510
Version 10.5 10511
Version 10.5 10512
Version 10.5 10513
Version 10.5 10514
Version 10.5 10515
Version 10.5 10516
Version 10.5 10517
Version 10.5 10518
Version 10.5 10519
Version 10.5 10520
Version 10.5 10521
Version 10.5 10522
Version 10.5 10523
Version 10.5 10524
Version 10.5 10525
Version 10.5 10526
Version 10.5 10527
Version 10.5 10528
Version 10.5 10529
Version 10.5 10530
Version 10.5 10531
Version 10.5 10532
Version 10.5 10533

Timeline

No history available yet.