Zohocorp ManageEngine ServiceDesk Plus MSP and...
Moderate severity
Unreviewed
Published
May 22, 2025
to the GitHub Advisory Database
•
Updated May 22, 2025
Description
Published by the National Vulnerability Database
May 22, 2025
Published to the GitHub Advisory Database
May 22, 2025
Last updated
May 22, 2025
Zohocorp ManageEngine ServiceDesk Plus MSP and SupportCenter Plus versions below 14920 are vulnerable to authenticated Local File Inclusion (LFI) in the Admin module, where help card content is loaded.
References