Vulnerabilities > Zohocorp > Manageengine Servicedesk Plus MSP

DATE CVE VULNERABILITY TITLE RISK
2021-06-29 CVE-2021-31530 Unspecified vulnerability in Zohocorp Manageengine Servicedesk Plus MSP 10.5
Zoho ManageEngine ServiceDesk Plus MSP before 10522 is vulnerable to Information Disclosure.
network
low complexity
zohocorp
7.5
2021-06-29 CVE-2021-31531 Server-Side Request Forgery (SSRF) vulnerability in Zohocorp Manageengine Servicedesk Plus MSP 10.5
Zoho ManageEngine ServiceDesk Plus MSP before 10521 is vulnerable to Server-Side Request Forgery (SSRF).
network
low complexity
zohocorp CWE-918
critical
9.8
2021-06-16 CVE-2021-31159 Information Exposure Through an Error Message vulnerability in Zohocorp Manageengine Servicedesk Plus MSP 10.5
Zoho ManageEngine ServiceDesk Plus MSP before 10519 is vulnerable to a User Enumeration bug due to improper error-message generation in the Forgot Password functionality, aka SDPMSP-15732.
network
low complexity
zohocorp CWE-209
5.3