ZOHO ManageEngine ServiceDesk /download-file 路径存在敏感信息泄露

日期: 2023-03-27 | 影响软件: Gin | POC: 否

漏洞描述

The download-file file of ServiceDesk Plus v10<10509 has a sensitive information leakage vulnerability, which can bypass authentication and download sensitive information without authorization.

PoC代码

暂无

相关漏洞推荐