CVE-2019-8394
Known Exploited (CISA KEV)MEDIUM
6.5
CVSS Severity Score
Vulnerability Description
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization.
Affected Platforms (CPE)
📦
Zohocorp
Manageengine Servicedesk Plus
< 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
Manageengine Servicedesk Plus
= 10.0.0📦
Zohocorp
