First published: Thu Nov 17 2022(Updated: )
Zoho ManageEngine SupportCenter Plus through 11024 allows low-privileged users to view the organization users list.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp Manageengine Supportcenter Plus | =11.0 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11000 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11001 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11002 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11003 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11004 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11005 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11006 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11007 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11008 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11009 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11010 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11011 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11012 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11013 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11014 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11015 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11016 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11017 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11018 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11019 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11020 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11021 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11022 | |
Zohocorp Manageengine Supportcenter Plus | =11.0-11024 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-42903.
Zoho ManageEngine SupportCenter Plus versions 11.0 to 11.0-11024 are affected by this vulnerability.
The severity of CVE-2022-42903 is low with a CVSS score of 3.3.
Low-privileged users can exploit this vulnerability to view the organization users list.
Yes, Zoho has provided a fix for this vulnerability. Please refer to the official Zoho ManageEngine SupportCenter Plus website for more information.