In Zoho ManageEngine SupportCenter Plus before 11023, V3 API requests are vulnerable to authentication bypass. (An API request may, in effect, be executed with the credentials of a user who authenticated in the past.)
CVSS
No CVSS.
References
Configurations
No configuration.
Information
Published : 2022-07-26 14:15
Updated : 2022-07-26 15:16
NVD link : CVE-2022-36412
Mitre link : CVE-2022-36412
JSON object : View
Products Affected
No product.
CWE
No CWE.
