vulnerability

Zoho ManageEngine ServiceDesk Plus MSP: CVE-2024-50053: Stored XSS Vulnerability

Severity
7
CVSS
(AV:N/AC:M/Au:S/C:P/I:C/A:N)
Published
Feb 25, 2025
Added
Mar 26, 2025
Modified
Jul 3, 2025

Description

ManageEngine ServiceDesk Plus versions below 14920 ServiceDesk Plus MSP and SupportCentre Plus versions below 14910 are vulnerable to Stored XSS in the task creation option.

Solution

zoho-manageengine-servicedesk-plus-msp-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.