Record summary

CVE-2019-12542 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the SearchN.do userConfigID parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Proofs of concept

2

Catalogued exploits

ExploitDBZoho ManageEngine ServiceDesk Plus 9.3 - 'SearchN.do' Cross-Site ScriptingExploitDB exploitby VingroupNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubtarantula-team/CVE-2019-12542Repository PoCby tarantula-teamStars: 0Not analyzed1 file

507 B

GitHub

PoC details

References

3