PT-2022-17176 · Zoho · Zoho Manageengine Servicedesk Plus

Matt

·

Published

2022-04-05

·

Updated

2023-08-08

·

CVE-2022-25245

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zoho ManageEngine ServiceDesk Plus versions prior to 13001
Description The issue allows anyone to determine the organisation's default currency name.
Recommendations For versions prior to 13001, update to version 13001 or later to resolve the issue.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-25245

Affected Products

Zoho Manageengine Servicedesk Plus