Zoho ManageEngine ServiceDesk Plus Remote Code Execution Vulnerability
Vendor: Zoho
Product: ManageEngine ServiceDesk Plus (SDP) / SupportCenter Plus
Added: 2021-12-01
Due Date: 2021-12-15
Description:
Zoho ManageEngine ServiceDesk Plus before 11306, ServiceDesk Plus MSP before 10530, and SupportCenter Plus before 11014 are vulnerable to unauthenticated remote code execution
Required Action:
Apply updates per vendor instructions.
CWEs: