ZOHO ManageEngine ServiceDesk Plus prior to 9.2 uses an insecure method for generating cookies, which makes it easier for malicious users to obtain sensitive password information by leveraging access to a cookie.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
zohocorp servicedesk plus |