First published: Mon Aug 28 2017(Updated: )
Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 to v7.9; IT360 v8 to v10.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho ManageEngine ServiceDesk Plus | ||
ManageEngine AssetExplorer | ||
ManageEngine SupportCenter Plus | ||
ManageEngine IT360 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-5301 has a high severity rating due to its potential for directory traversal attacks.
To fix CVE-2014-5301, update affected ManageEngine products to their latest available versions.
CVE-2014-5301 impacts ServiceDesk Plus, AssetExplorer, SupportCenter, and IT360 from ManageEngine.
Yes, CVE-2014-5301 can potentially allow an attacker to execute arbitrary code on the server.
Organizations using vulnerable versions of ManageEngine products are affected by CVE-2014-5301.