CVE-2021-20081

Publication date

2021-06-10 11:01:56

Family

tenable

State

PUBLISHED

Description

Incomplete List of Disallowed Inputs in ManageEngine ServiceDesk Plus before version 11205 allows a remote, authenticated attacker to execute arbitrary commands with SYSTEM privileges.