Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via the comment field when changing the credentials in the Assets.
2023-02-01T20:15:12.377
2025-03-27T15:15:44.027
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |
Application | zohocorp | manageengine_servicedesk_plus | 14.0 | Yes |