Record summary

CVE-2019-12543 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

An issue was discovered in Zoho ManageEngine ServiceDesk Plus 9.3. There is XSS via the PurchaseRequest.do serviceRequestId parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Proofs of concept

2

Catalogued exploits

ExploitDBZoho ManageEngine ServiceDesk Plus 9.3 - 'PurchaseRequest.do' Cross-Site ScriptingExploitDB exploitby VingroupNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubtarantula-team/CVE-2019-12543Repository PoCby tarantula-teamStars: 0Not analyzed1 file

467 B

GitHub

PoC details

References

3