HTTP: ZoHo ManageEngine ServiceDesk Plus Arbitrary File Upload
This signature detects attempts to exploit a known vulnerability against ZoHo ManageEngine ServiceDesk Plus. A successful attack can lead to arbitrary code execution.
Extended Description
Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization.
Affected Products
Zohocorp manageengine_servicedesk_plus
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Zohocorp
4.0