Zoho ManageEngine ServiceDesk Plus prior to 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
zohocorp manageengine servicedesk plus 11.1 |
||
zohocorp manageengine servicedesk plus 11.0 |
||
zohocorp manageengine servicedesk plus 11.2 |
||
zohocorp manageengine servicedesk plus 11.3 |