Security Advisory

CVE-2018-16965

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-21 17:00:00
Last updated 2024-08-05 10:39:59
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Zoho ManageEngine SupportCenter Plus before 8.1 Build 8109, there is HTML Injection and Stored XSS via the /ServiceContractDef.do contractName parameter.