Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2021-37415

Zoho ManageEngine ServiceDesk Plus before 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication.

  • Published: Sep 1, 2021
  • Updated: Apr 14, 2023
  • CVE: CVE-2021-37415
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.8
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
zohocorp / manageengine_servicedesk_plus 11.1 11.1.x
zohocorp / manageengine_servicedesk_plus 11.1-11111 11.1-11111.x
zohocorp / manageengine_servicedesk_plus 11.1-11110 11.1-11110.x
zohocorp / manageengine_servicedesk_plus 11.1-11109 11.1-11109.x
zohocorp / manageengine_servicedesk_plus 11.1-11108 11.1-11108.x
zohocorp / manageengine_servicedesk_plus 11.1-11107 11.1-11107.x
zohocorp / manageengine_servicedesk_plus 11.1-11106 11.1-11106.x
zohocorp / manageengine_servicedesk_plus 11.1-11105 11.1-11105.x
zohocorp / manageengine_servicedesk_plus 11.1-11104 11.1-11104.x
zohocorp / manageengine_servicedesk_plus 11.1-11103 11.1-11103.x
zohocorp / manageengine_servicedesk_plus 11.1-11102 11.1-11102.x
zohocorp / manageengine_servicedesk_plus 11.1-11101 11.1-11101.x
zohocorp / manageengine_servicedesk_plus 11.1-11100 11.1-11100.x
zohocorp / manageengine_servicedesk_plus 11.1-11114 11.1-11114.x
zohocorp / manageengine_servicedesk_plus 11.1-11113 11.1-11113.x
zohocorp / manageengine_servicedesk_plus 11.1-11112 11.1-11112.x
zohocorp / manageengine_servicedesk_plus 11.0-11005 11.0-11005.x
zohocorp / manageengine_servicedesk_plus 11.0-11006 11.0-11006.x
zohocorp / manageengine_servicedesk_plus 11.0-11007 11.0-11007.x
zohocorp / manageengine_servicedesk_plus 11.0-11008 11.0-11008.x
zohocorp / manageengine_servicedesk_plus 11.0-11009 11.0-11009.x
zohocorp / manageengine_servicedesk_plus 11.0-11010 11.0-11010.x
zohocorp / manageengine_servicedesk_plus 11.1-11118 11.1-11118.x
zohocorp / manageengine_servicedesk_plus 11.1-11119 11.1-11119.x
zohocorp / manageengine_servicedesk_plus 11.1-11120 11.1-11120.x
zohocorp / manageengine_servicedesk_plus 11.1-11121 11.1-11121.x
zohocorp / manageengine_servicedesk_plus 11.1-11122 11.1-11122.x
zohocorp / manageengine_servicedesk_plus 11.1-11123 11.1-11123.x
zohocorp / manageengine_servicedesk_plus 11.1-11124 11.1-11124.x
zohocorp / manageengine_servicedesk_plus 11.1-11125 11.1-11125.x
zohocorp / manageengine_servicedesk_plus 11.1-11126 11.1-11126.x
zohocorp / manageengine_servicedesk_plus 11.1-11127 11.1-11127.x
zohocorp / manageengine_servicedesk_plus 11.1-11128 11.1-11128.x
zohocorp / manageengine_servicedesk_plus 11.1-11129 11.1-11129.x
zohocorp / manageengine_servicedesk_plus 11.1-11130 11.1-11130.x
zohocorp / manageengine_servicedesk_plus 11.1-11131 11.1-11131.x
zohocorp / manageengine_servicedesk_plus 11.1-11132 11.1-11132.x
zohocorp / manageengine_servicedesk_plus 11.1-11133 11.1-11133.x
zohocorp / manageengine_servicedesk_plus 11.1-11115 11.1-11115.x
zohocorp / manageengine_servicedesk_plus 11.1-11116 11.1-11116.x
zohocorp / manageengine_servicedesk_plus 11.1-11117 11.1-11117.x
zohocorp / manageengine_servicedesk_plus 11.2-11201 11.2-11201.x
zohocorp / manageengine_servicedesk_plus 11.2-11202 11.2-11202.x
zohocorp / manageengine_servicedesk_plus 11.2-11203 11.2-11203.x
zohocorp / manageengine_servicedesk_plus 11.2-11204 11.2-11204.x
zohocorp / manageengine_servicedesk_plus 11.2 11.2.x
zohocorp / manageengine_servicedesk_plus 11.3-11300 11.3-11300.x
zohocorp / manageengine_servicedesk_plus 11.3-11301 11.3-11301.x
zohocorp / manageengine_servicedesk_plus 11.3 11.3.x
zohocorp / manageengine_servicedesk_plus 11.1-11134 11.1-11134.x
zohocorp / manageengine_servicedesk_plus 11.1-11135 11.1-11135.x
zohocorp / manageengine_servicedesk_plus 11.1-11136 11.1-11136.x
zohocorp / manageengine_servicedesk_plus 11.1-11137 11.1-11137.x
zohocorp / manageengine_servicedesk_plus 11.1-11138 11.1-11138.x
zohocorp / manageengine_servicedesk_plus 11.1-11139 11.1-11139.x
zohocorp / manageengine_servicedesk_plus 11.1-11140 11.1-11140.x
zohocorp / manageengine_servicedesk_plus 11.1-11141 11.1-11141.x
zohocorp / manageengine_servicedesk_plus 11.1-11142 11.1-11142.x
zohocorp / manageengine_servicedesk_plus 11.1-11143 11.1-11143.x
zohocorp / manageengine_servicedesk_plus 11.1-11144 11.1-11144.x
zohocorp / manageengine_servicedesk_plus 11.2-11200 11.2-11200.x
zohocorp / manageengine_servicedesk_plus 11.2-11205 11.2-11205.x
zohocorp / manageengine_servicedesk_plus 11.2-11206 11.2-11206.x
zohocorp / manageengine_servicedesk_plus 11.2-11207 11.2-11207.x
zohocorp / manageengine_servicedesk_plus 11.0-11011 11.0-11011.x