Manageengine Servicedesk Plus

by Zohocorp

Take action — actively targeted

Manageengine Servicedesk Plus is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 34.0%
Confirmed actively exploited (CISA) 8.0%
Public exploit code available 0.0%
Based on 50 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2022-47966 9.8 94.4% Yes
CVE-2021-44077 9.8 94.3% Yes
CVE-2021-37415 9.8 92.0% Yes
CVE-2019-8394 6.5 87.5% Yes
CVE-2023-23074 6.1 70.9%
CVE-2022-40770 7.2 65.9%
CVE-2021-20081 7.2 62.6%
CVE-2023-23078 6.1 26.2%
CVE-2023-23073 6.1 25.7%
CVE-2023-23077 6.1 25.7%
CVE-2020-14048 7.5 25.0%
CVE-2021-46065 4.8 20.4%
CVE-2021-20080 6.1 18.6%
CVE-2023-26601 7.5 16.4%
CVE-2019-10273 4.3 13.7%
CVE-2019-8395 9.8 12.2%
CVE-2021-31160 7.5 10.0%
CVE-2019-12252 6.5 7.0%
CVE-2019-12189 6.1 6.8%
CVE-2018-7248 5.3 5.2%
50
/ 100
high-risk
Active Threat 45/50 · Critical
Exploit Availability 5/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.