First published: Tue Nov 30 2021(Updated: )
Zoho ManageEngine SupportCenter Plus before 11016 is vulnerable to Reflected XSS in the Accounts module.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp Manageengine Supportcenter Plus | =11.0 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11001 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11002 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11003 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11004 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11005 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11006 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11007 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11008 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11009 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11010 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11011 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11012 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11013 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11014 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11015 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Zoho ManageEngine SupportCenter Plus vulnerability is CVE-2021-43295.
The severity of CVE-2021-43295 is medium.
The affected software for CVE-2021-43295 is Zohocorp Manageengine Supportcenter Plus version 11.0-11001 to 11.0-11015.
CVE-2021-43295 is a vulnerability in Zoho ManageEngine SupportCenter Plus that allows for reflected cross-site scripting (XSS) attacks in the Accounts module.
To fix the vulnerability CVE-2021-43295, it is recommended to update Zoho ManageEngine SupportCenter Plus to version 11.0-11016 or later.