CVE-2021-43295: XSS
Published Nov 30, 2021
·Updated
Zoho ManageEngine SupportCenter Plus before 11016 is vulnerable to Reflected XSS in the Accounts module.
Affected Software
16 affected components
ZohoCorp Manageengine Supportcenter Plus=11.0
ZohoCorp Manageengine Supportcenter Plus=11.0-11001
ZohoCorp Manageengine Supportcenter Plus=11.0-11002
ZohoCorp Manageengine Supportcenter Plus=11.0-11003
ZohoCorp Manageengine Supportcenter Plus=11.0-11004
ZohoCorp Manageengine Supportcenter Plus=11.0-11005
ZohoCorp Manageengine Supportcenter Plus=11.0-11006
ZohoCorp Manageengine Supportcenter Plus=11.0-11007
ZohoCorp Manageengine Supportcenter Plus=11.0-11008
ZohoCorp Manageengine Supportcenter Plus=11.0-11009
ZohoCorp Manageengine Supportcenter Plus=11.0-11010
ZohoCorp Manageengine Supportcenter Plus=11.0-11011
ZohoCorp Manageengine Supportcenter Plus=11.0-11012
ZohoCorp Manageengine Supportcenter Plus=11.0-11013
ZohoCorp Manageengine Supportcenter Plus=11.0-11014
ZohoCorp Manageengine Supportcenter Plus=11.0-11015
Event History
Nov 30, 2021
CVE Published
via MITRE·06:39 PM
Data Sourced
via MITRE·06:39 PM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Zoho ManageEngine SupportCenter Plus vulnerability?
The vulnerability ID for this Zoho ManageEngine SupportCenter Plus vulnerability is CVE-2021-43295.
2
What is the severity of CVE-2021-43295?
The severity of CVE-2021-43295 is medium.
3
What is the affected software for CVE-2021-43295?
The affected software for CVE-2021-43295 is Zohocorp Manageengine Supportcenter Plus version 11.0-11001 to 11.0-11015.
4
What is the vulnerability description for CVE-2021-43295?
CVE-2021-43295 is a vulnerability in Zoho ManageEngine SupportCenter Plus that allows for reflected cross-site scripting (XSS) attacks in the Accounts module.
5
How can I fix the vulnerability CVE-2021-43295?
To fix the vulnerability CVE-2021-43295, it is recommended to update Zoho ManageEngine SupportCenter Plus to version 11.0-11016 or later.