Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Manageengine_desktop_central_managed_service_providers
(Zohocorp)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 2 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-01-18 | CVE-2021-44757 | Zoho ManageEngine Desktop Central before 10.1.2137.9 and Desktop Central MSP before 10.1.2137.9 allow attackers to bypass authentication, and read sensitive information or upload an arbitrary ZIP archive to the server. | Manageengine_desktop_central, Manageengine_desktop_central_managed_service_providers | 9.1 | ||
2020-01-17 | CVE-2014-5007 | Directory traversal vulnerability in the agentLogUploader servlet in ZOHO ManageEngine Desktop Central (DC) and Desktop Central Managed Service Providers (MSP) edition before 9 build 90055 allows remote attackers to write to and execute arbitrary files as SYSTEM via a .. (dot dot) in the filename parameter. | Manageengine_desktop_central, Manageengine_desktop_central_managed_service_providers | N/A |