There is an improper privilege management vulnerability identified in ManageEngine's Asset Explorer, ServiceDesk Plus, ServiceDesk Plus MSP, and SupportCenter Plus products by Zohocorp.
This vulnerability impacts Asset Explorer versions before 7710, ServiceDesk Plus versions before 15110, ServiceDesk Plus MSP versions before 14940, and SupportCenter Plus versions before 14940.
Metrics
Affected Vendors & Products
References
History
Wed, 20 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Aug 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is an improper privilege management vulnerability identified in ManageEngine's Asset Explorer, ServiceDesk Plus, ServiceDesk Plus MSP, and SupportCenter Plus products by Zohocorp. This vulnerability impacts Asset Explorer versions before 7710, ServiceDesk Plus versions before 15110, ServiceDesk Plus MSP versions before 14940, and SupportCenter Plus versions before 14940. | |
Title | User privilege escalation vulnerability | |
Weaknesses | CWE-269 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Zohocorp
Published: 2025-08-20T16:53:29.010Z
Updated: 2025-08-21T03:55:16.201Z
Reserved: 2025-07-29T14:32:17.844Z
Link: CVE-2025-8309

Updated: 2025-08-20T17:35:01.557Z

Status : Received
Published: 2025-08-20T17:15:37.783
Modified: 2025-08-20T17:15:37.783
Link: CVE-2025-8309

No data.