In Zoho ManageEngine ServiceDesk Plus before 9403, an XSS issue allows an attacker to run arbitrary JavaScript via a /api/request/?OPERATION_NAME= URI, aka SD-69139.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-03-30T13:00:00
Updated: 2024-08-05T05:47:55.876Z
Reserved: 2018-01-19T00:00:00
Link: CVE-2018-5799
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-03-30T13:29:00.207
Modified: 2018-04-19T19:16:24.863
Link: CVE-2018-5799
Redhat
No data.