EIP-2026-104328
PRE-CVEManageEngine ServiceDesk Plus 8.0.0 Build 8013 - Improper User Privileges
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104328. PoCs published by Narendra Shinde.
AI-analyzed exploit summary This advisory details an improper privilege management vulnerability in ManageEngine ServiceDesk Plus, where low-privileged users can delete backup databases via a crafted URI due to insufficient permission checks. The PoC demonstrates the exploit via a specific HTTP request.
Description
ManageEngine ServiceDesk Plus 8.0.0 Build 8013 - Improper User Privileges
Exploits (1)
This advisory details an improper privilege management vulnerability in ManageEngine ServiceDesk Plus, where low-privileged users can delete backup databases via a crafted URI due to insufficient permission checks. The PoC demonstrates the exploit via a specific HTTP request.