vendor:
ServiceDesk Plus
by:
xistence
7,5
CVSS
HIGH
Unauthenticated Path Traversal
22
CWE
Product Name: ServiceDesk Plus
Affected Version From: 9.1 build 9110 and previous versions
Affected Version To: 9.1 build 9110
Patch Exists: YES
Related CWE: N/A
CPE: a:manageengine:servicedesk_plus
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2015
ManageEngine ServiceDesk Plus <= 9.1 build 9110 - Path Traversal
The 'fName' parameter is vulnerable to path traversal without the need for any authentication. On Windows environments, downloading files will be done with SYSTEM privileges. This makes it possible to download any file on the filesystem.
Mitigation:
Upgrade to ServiceDesk 9.1 build 9111.