vulnerability

Zoho ManageEngine ServiceDesk Plus: CVE-2023-38331: Stored XSS vulnerability

Severity
5
CVSS
(AV:N/AC:M/Au:S/C:P/I:P/A:N)
Published
Apr 24, 2023
Added
Dec 18, 2024
Modified
Jul 3, 2025

Description

A stored XSS vulnerability which allow users to inject the vulnerable script in products module has been fixed and released.

Solution

zoho-manageengine-servicedesk-plus-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.