Security Advisory

CVE-2022-36412

9.8
CRITICAL

Vulnerability Description

In Zoho ManageEngine SupportCenter Plus before 11023, V3 API requests are vulnerable to authentication bypass. (An API request may, in effect, be executed with the credentials of a user who authenticated in the past.)
Published Date July 26, 2022
Official Source NIST NVD Advisory