← Back to browse · API

CVE-2022-40770

Severity
HIGH
CVSS
7.2
EPSS
0.82529
Risk score
57.69
CISA KEV
No
PoC
No
Published
2022-11-23
Modified
2025-04-28
First seen
2026-08-07
Aliases
EUVD-2022-44036, GHSA-R3RG-WHRJ-V9P8
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-44036

Description

Zoho ManageEngine ServiceDesk Plus versions 13010 and prior are vulnerable to authenticated command injection. This can be exploited by high-privileged users.

References