Security Advisory

CVE-2018-11716

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-07-16 14:00:00
Last updated 2024-08-05 08:17:09
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Zoho ManageEngine Desktop Central before 100230. There is unauthenticated remote access to all log files of a Desktop Central instance containing critical information (private information such as location of enrolled devices, cleartext passwords, patching level, etc.) via a GET request on port 8022, 8443, or 8444.