Back to search
CVE-2019-10273
Published: Apr 4, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
Information leakage vulnerability in the /mc login page in ManageEngine ServiceDesk Plus 9.3 software allows authenticated users to enumerate active users. Due to a flaw within the way the authentication is handled, an attacker is able to login and verify any active account.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://0x445.github.io/CVE-2019-10273/
x_refsource_MISC
46674
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now