Zoho ManageEngine Desktop Central before 10.0.483 allows unauthenticated users to access PDFGenerationServlet, leading to sensitive information disclosure.
References
| Link | Resource |
|---|---|
| https://www.manageengine.com/products/desktop-central/unauthenticated-servlet-access.html | Vendor Advisory |
Configurations
Information
Published : 2020-03-30 18:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-8509
Mitre link : CVE-2020-8509
JSON object : View
Products Affected
zohocorp
- manageengine_desktop_central
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
