SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  ManageEngine ServiceDesk Plus XSS 2

Category: WEB-ATTACKS      

Insufficient output sanitization in ManageEngine ServiceDesk Plus before version 11200 and ManageEngine AssetExplorer before version 6800 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks by uploading a crafted XML asset file.


Relevant Information