Security Advisory
CVE-2022-36412
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In Zoho ManageEngine SupportCenter Plus before 11023, V3 API requests are vulnerable to authentication bypass. (An API request may, in effect, be executed with the credentials of a user who authenticated in the past.)