There is an improper privilege management vulnerability identified in ManageEngine's Asset Explorer, ServiceDesk Plus, ServiceDesk Plus MSP, and SupportCenter Plus products by Zohocorp.
This vulnerability impacts Asset Explorer versions before 7710, ServiceDesk Plus versions before 15110, ServiceDesk Plus MSP versions before 14940, and SupportCenter Plus versions before 14940.
This vulnerability impacts Asset Explorer versions before 7710, ServiceDesk Plus versions before 15110, ServiceDesk Plus MSP versions before 14940, and SupportCenter Plus versions before 14940.
Metrics
Affected Vendors & Products
References
History
Sat, 23 Aug 2025 11:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Manageengine
Manageengine assetexplorer Manageengine servicedesk Plus Manageengine supportcenter Plus |
|
Vendors & Products |
Manageengine
Manageengine assetexplorer Manageengine servicedesk Plus Manageengine supportcenter Plus |
Wed, 20 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Aug 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is an improper privilege management vulnerability identified in ManageEngine's Asset Explorer, ServiceDesk Plus, ServiceDesk Plus MSP, and SupportCenter Plus products by Zohocorp. This vulnerability impacts Asset Explorer versions before 7710, ServiceDesk Plus versions before 15110, ServiceDesk Plus MSP versions before 14940, and SupportCenter Plus versions before 14940. | |
Title | User privilege escalation vulnerability | |
Weaknesses | CWE-269 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Zohocorp
Published:
Updated: 2025-08-21T03:55:16.201Z
Reserved: 2025-07-29T14:32:17.844Z
Link: CVE-2025-8309

Updated: 2025-08-20T17:35:01.557Z

Status : Awaiting Analysis
Published: 2025-08-20T17:15:37.783
Modified: 2025-08-22T18:09:17.710
Link: CVE-2025-8309

No data.

Updated: 2025-08-23T10:55:45Z