CVE-2021-37415: Zoho ManageEngine ServiceDesk Authentication Bypass Vulnerability
Zoho ManageEngine ServiceDesk Plus before 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution