CVE-2021-44675

Zoho ManageEngine ServiceDesk Plus MSP before 10.5 Build 10534 is vulnerable to unauthenticated remote code execution due to a filter bypass in which authentication is not required.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
VendorProductVersion
zohocorpmanageengine_servicedesk_plus_msp
𝑥
≤ 10.5
zohocorpmanageengine_servicedesk_plus_msp
10.5:10500
zohocorpmanageengine_servicedesk_plus_msp
10.5:10501
zohocorpmanageengine_servicedesk_plus_msp
10.5:10502
zohocorpmanageengine_servicedesk_plus_msp
10.5:10503
zohocorpmanageengine_servicedesk_plus_msp
10.5:10504
zohocorpmanageengine_servicedesk_plus_msp
10.5:10505
zohocorpmanageengine_servicedesk_plus_msp
10.5:10506
zohocorpmanageengine_servicedesk_plus_msp
10.5:10507
zohocorpmanageengine_servicedesk_plus_msp
10.5:10508
zohocorpmanageengine_servicedesk_plus_msp
10.5:10509
zohocorpmanageengine_servicedesk_plus_msp
10.5:10510
zohocorpmanageengine_servicedesk_plus_msp
10.5:10511
zohocorpmanageengine_servicedesk_plus_msp
10.5:10512
zohocorpmanageengine_servicedesk_plus_msp
10.5:10513
zohocorpmanageengine_servicedesk_plus_msp
10.5:10514
zohocorpmanageengine_servicedesk_plus_msp
10.5:10515
zohocorpmanageengine_servicedesk_plus_msp
10.5:10516
zohocorpmanageengine_servicedesk_plus_msp
10.5:10517
zohocorpmanageengine_servicedesk_plus_msp
10.5:10518
zohocorpmanageengine_servicedesk_plus_msp
10.5:10519
zohocorpmanageengine_servicedesk_plus_msp
10.5:10520
zohocorpmanageengine_servicedesk_plus_msp
10.5:10521
zohocorpmanageengine_servicedesk_plus_msp
10.5:10522
zohocorpmanageengine_servicedesk_plus_msp
10.5:10523
zohocorpmanageengine_servicedesk_plus_msp
10.5:10524
zohocorpmanageengine_servicedesk_plus_msp
10.5:10525
zohocorpmanageengine_servicedesk_plus_msp
10.5:10526
zohocorpmanageengine_servicedesk_plus_msp
10.5:10527
zohocorpmanageengine_servicedesk_plus_msp
10.5:10528
zohocorpmanageengine_servicedesk_plus_msp
10.5:10529
zohocorpmanageengine_servicedesk_plus_msp
10.5:10530
zohocorpmanageengine_servicedesk_plus_msp
10.5:10531
zohocorpmanageengine_servicedesk_plus_msp
10.5:10532
zohocorpmanageengine_servicedesk_plus_msp
10.5:10533
𝑥
= Vulnerable software versions