CVE-2023-26601

HIGH

ManageEngine Asset Explorer < 6.9 - Denial of Service

Title source: llm
STIX 2.1

Description

Zoho ManageEngine ServiceDesk Plus through 14104, Asset Explorer through 6987, ServiceDesk Plus MSP before 14000, and Support Center Plus before 14000 allow Denial-of-Service (DoS).

References (2)

Core 2

Scores

CVSS v3 7.5
EPSS 0.1636
EPSS Percentile 94.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-400
Status published
Products (8)
zohocorp/manageengine_assetexplorer 6.9 (37 CPE variants)
zohocorp/manageengine_assetexplorer < 6.9
zohocorp/manageengine_servicedesk_plus 14.1 (5 CPE variants)
zohocorp/manageengine_servicedesk_plus < 14.1
zohocorp/manageengine_servicedesk_plus_msp 14.0 14000
zohocorp/manageengine_servicedesk_plus_msp < 14.0
zohocorp/manageengine_supportcenter_plus 14.0 14000
zohocorp/manageengine_supportcenter_plus < 14.0
Published Mar 06, 2023
Tracked Since Feb 18, 2026