7.5

CVE-2022-35403

Zoho ManageEngine ServiceDesk Plus before 13008, ServiceDesk Plus MSP before 10606, and SupportCenter Plus before 11022 are affected by an unauthenticated local file disclosure vulnerability via ticket-creation email. (This also affects Asset Explorer before 6977 with authentication.)

Data is provided by the National Vulnerability Database (NVD)
ZohocorpManageengine Servicedesk Plus Version13.0 Update13000
ZohocorpManageengine Servicedesk Plus Version13.0 Update13001
ZohocorpManageengine Servicedesk Plus Version13.0 Update13002
ZohocorpManageengine Servicedesk Plus Version13.0 Update13003
ZohocorpManageengine Servicedesk Plus Version13.0 Update13004
ZohocorpManageengine Servicedesk Plus Version13.0 Update13005
ZohocorpManageengine Servicedesk Plus Version13.0 Update13006
ZohocorpManageengine Servicedesk Plus Version13.0 Update13007
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10600
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10601
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10602
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10603
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10604
ZohocorpManageengine Servicedesk Plus Msp Version10.6 Update10605
ZohocorpManageengine Supportcenter Plus Version11.0 Update11000
ZohocorpManageengine Supportcenter Plus Version11.0 Update11001
ZohocorpManageengine Supportcenter Plus Version11.0 Update11002
ZohocorpManageengine Supportcenter Plus Version11.0 Update11003
ZohocorpManageengine Supportcenter Plus Version11.0 Update11004
ZohocorpManageengine Supportcenter Plus Version11.0 Update11005
ZohocorpManageengine Supportcenter Plus Version11.0 Update11006
ZohocorpManageengine Supportcenter Plus Version11.0 Update11007
ZohocorpManageengine Supportcenter Plus Version11.0 Update11008
ZohocorpManageengine Supportcenter Plus Version11.0 Update11009
ZohocorpManageengine Supportcenter Plus Version11.0 Update11010
ZohocorpManageengine Supportcenter Plus Version11.0 Update11011
ZohocorpManageengine Supportcenter Plus Version11.0 Update11012
ZohocorpManageengine Supportcenter Plus Version11.0 Update11013
ZohocorpManageengine Supportcenter Plus Version11.0 Update11014
ZohocorpManageengine Supportcenter Plus Version11.0 Update11015
ZohocorpManageengine Supportcenter Plus Version11.0 Update11016
ZohocorpManageengine Supportcenter Plus Version11.0 Update11017
ZohocorpManageengine Supportcenter Plus Version11.0 Update11018
ZohocorpManageengine Supportcenter Plus Version11.0 Update11019
ZohocorpManageengine Supportcenter Plus Version11.0 Update11020
ZohocorpManageengine Supportcenter Plus Version11.0 Update11021
ZohocorpManageengine Assetexplorer Version6.9 Update6900
ZohocorpManageengine Assetexplorer Version6.9 Update6901
ZohocorpManageengine Assetexplorer Version6.9 Update6902
ZohocorpManageengine Assetexplorer Version6.9 Update6903
ZohocorpManageengine Assetexplorer Version6.9 Update6904
ZohocorpManageengine Assetexplorer Version6.9 Update6905
ZohocorpManageengine Assetexplorer Version6.9 Update6906
ZohocorpManageengine Assetexplorer Version6.9 Update6907
ZohocorpManageengine Assetexplorer Version6.9 Update6908
ZohocorpManageengine Assetexplorer Version6.9 Update6909
ZohocorpManageengine Assetexplorer Version6.9 Update6950
ZohocorpManageengine Assetexplorer Version6.9 Update6951
ZohocorpManageengine Assetexplorer Version6.9 Update6952
ZohocorpManageengine Assetexplorer Version6.9 Update6953
ZohocorpManageengine Assetexplorer Version6.9 Update6954
ZohocorpManageengine Assetexplorer Version6.9 Update6955
ZohocorpManageengine Assetexplorer Version6.9 Update6956
ZohocorpManageengine Assetexplorer Version6.9 Update6957
ZohocorpManageengine Assetexplorer Version6.9 Update6970
ZohocorpManageengine Assetexplorer Version6.9 Update6971
ZohocorpManageengine Assetexplorer Version6.9 Update6972
ZohocorpManageengine Assetexplorer Version6.9 Update6973
ZohocorpManageengine Assetexplorer Version6.9 Update6974
ZohocorpManageengine Assetexplorer Version6.9 Update6975
ZohocorpManageengine Assetexplorer Version6.9 Update6976
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.81% 0.856
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N