Security Advisory
CVE-2018-11716
9.8
CRITICAL
Vulnerability Description
An issue was discovered in Zoho ManageEngine Desktop Central before 100230. There is unauthenticated remote access to all log files of a Desktop Central instance containing critical information (private information such as location of enrolled devices, cleartext passwords, patching level, etc.) via a GET request on port 8022, 8443, or 8444.
Published Date
July 16, 2018
Official Source
NIST NVD Advisory