Insufficient output sanitization in... CVE-2021-20080

4.3 AV AC AU C I A
发布: 2021-04-09
修订: 2024-11-21

Insufficient output sanitization in ManageEngine ServiceDesk Plus before version 11200 and ManageEngine AssetExplorer before version 6800 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks by uploading a crafted XML asset file.

0%
暂无可用Exp或PoC
当前有276条受影响产品信息