CVE-2022-32551
02.07.2022, 00:15
Zoho ManageEngine ServiceDesk Plus MSP before 10604 allows path traversal (to WEBINF/web.xml from sample/WEB-INF/web.xml or sample/META-INF/web.xml).
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_servicedesk_plus_msp | 𝑥 < 10.6 |
| zohocorp | manageengine_servicedesk_plus_msp | 10.6 |
| zohocorp | manageengine_servicedesk_plus_msp | 10.6:10600 |
| zohocorp | manageengine_servicedesk_plus_msp | 10.6:10601 |
| zohocorp | manageengine_servicedesk_plus_msp | 10.6:10602 |
| zohocorp | manageengine_servicedesk_plus_msp | 10.6:10603 |
𝑥
= Vulnerable software versions