Security Advisory

CVE-2022-36412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-26 13:34:05
Last updated 2024-08-03 10:07:33
Assigner mitre
State PUBLISHED

Description

In Zoho ManageEngine SupportCenter Plus before 11023, V3 API requests are vulnerable to authentication bypass. (An API request may, in effect, be executed with the credentials of a user who authenticated in the past.)