CVE-2023-26601
HIGHManageEngine Asset Explorer < 6.9 - Denial of Service
Title source: llmDescription
Zoho ManageEngine ServiceDesk Plus through 14104, Asset Explorer through 6987, ServiceDesk Plus MSP before 14000, and Support Center Plus before 14000 allow Denial-of-Service (DoS).
References (2)
Core 2
Core References
Product
https://manageengine.com
Scores
CVSS v3
7.5
EPSS
0.1636
EPSS Percentile
94.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-400
Status
published
Products (8)
zohocorp/manageengine_assetexplorer
6.9 (37 CPE variants)
zohocorp/manageengine_assetexplorer
< 6.9
zohocorp/manageengine_servicedesk_plus
14.1 (5 CPE variants)
zohocorp/manageengine_servicedesk_plus
< 14.1
zohocorp/manageengine_servicedesk_plus_msp
14.0 14000
zohocorp/manageengine_servicedesk_plus_msp
< 14.0
zohocorp/manageengine_supportcenter_plus
14.0 14000
zohocorp/manageengine_supportcenter_plus
< 14.0
Published
Mar 06, 2023
Tracked Since
Feb 18, 2026