cvedb.io
CVE-2022-40773
HIGH · CVSS 8.8
EPSS exploitation probability: 0%
Published 2022-11-12T04:15:09.010 · Last modified 2026-06-17T05:02:01.630

Summary

Zoho ManageEngine ServiceDesk Plus MSP before 10609 and SupportCenter Plus before 11025 are vulnerable to privilege escalation. This allows users to obtain sensitive data during an exportMickeyList export of requests from the list view.

Affected products

zohocorp — manageengine_servicedesk_plus_msp

Does this affect you?

Add your gear to cvedb and we'll alert you only when zohocorp ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.