Show plain JSON{"id": "CVE-2021-31160", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 5.0, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N", "authentication": "NONE", "integrityImpact": "NONE", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.5, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 3.9}]}, "published": "2021-06-29T14:15:08.383", "references": [{"url": "https://cds.thalesgroup.com/en/tcs-cert/CVE-2021-31160", "source": "cve@mitre.org"}, {"url": "https://excellium-services.com/cert-xlm-advisory/cve-2021-31160/", "tags": ["Broken Link"], "source": "cve@mitre.org"}, {"url": "https://www.manageengine.com/products/service-desk-msp/readme.html#10521", "tags": ["Release Notes", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://excellium-services.com/cert-xlm-advisory/cve-2021-31160/", "tags": ["Broken Link"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://www.manageengine.com/products/service-desk-msp/readme.html#10521", "tags": ["Release Notes", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-noinfo"}]}], "descriptions": [{"lang": "en", "value": "Zoho ManageEngine ServiceDesk Plus MSP before 10521 allows an attacker to access internal data."}, {"lang": "es", "value": "Zoho ManageEngine ServiceDesk Plus MSP versiones anteriores a 10521, permite a un atacante acceder a datos internos"}], "lastModified": "2025-05-30T16:15:26.997", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:10.5:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F10A782D-24BB-477D-B828-38FF8C008E85"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D82A926C-EDD8-4540-B6D0-695A16686511", "versionEndExcluding": "10.5"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10500:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BA242DB-20DE-4C22-9EEC-E8DF5C2D8260"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10501:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "860EBABC-B252-4C73-97C6-57A67ED94492"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10502:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "71E4F529-B091-4565-B024-185174483A70"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10503:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FADCF801-93E0-430B-BD14-092ACE960D05"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10504:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97CD568D-AF18-42E7-8357-9AE2B279BEE0"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10505:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9EB715EE-313B-4D62-A345-C4F7EB7C3DED"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10506:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B965016B-7584-4661-A8F3-C8EA3DB1E94C"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10507:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DCF7199B-A66E-425B-9614-D8256C4C828D"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10508:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "81F583C7-CB76-430A-A7AC-F3E727E0A26D"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10509:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F33A3E84-F73B-4797-8A97-3F10F77BD631"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10510:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "724284CA-51FE-46E8-B90E-99C53615901B"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10511:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8342A66C-4C0B-4FAE-987A-276CE126724B"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10512:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39C638A3-C8A1-4C2A-9B8F-39339F5674CE"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10513:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BB0CD9F-5459-44A7-9AD1-A70D3208369B"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10514:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7399A6B2-B0F2-4898-AC04-E50B508EA495"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10515:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7793C1AC-38FA-4B31-BB78-004A519DD4A2"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10516:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C30D050-4BDC-46E6-819E-49898AD56BFA"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10517:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AB7D8E3B-30C3-44C5-90B7-561F4E09830E"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10518:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "33960952-4461-4502-A2B5-364E22C96824"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10519:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0089DEEE-7CC5-4AC6-A66C-F22B4E6EF2DA"}, {"criteria": "cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:10.5:10520:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AD1A9B14-02F0-4674-9032-73778271CACB"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}