Lucene search

K
nessusThis script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.MANAGEENGINE_SERVICEDESK_CVE-2022-47966.NBIN
HistoryFeb 07, 2023 - 12:00 a.m.

ManageEngine ServiceDesk Plus Unauthenticated RCE (CVE-2022-47966)

2023-02-0700:00:00
This script is Copyright (C) 2023-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
21
manageengine servicedesk unauthenticated rce cve-2022-47966

EPSS

0.975

Percentile

100.0%

The ManageEngine ServiceDesk Plus running on the remote host is affected by a remote code execution vulnerability. An unauthenticated, remote attacker can exploit this, via a specially crafted message, to execute arbitrary code.

This plugin requires that both the scanner and target machine have internet access.

Binary data manageengine_servicedesk_cve-2022-47966.nbin