CVE-2022-23779
23Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 15%
exploitation probability
15%top 4% of all CVEs
observed exploitation
nono source reports it
Zoho ManageEngine Desktop Central before 10.1.2137.8 exposes the installed server name to anyone. The internal hostname can be discovered by reading HTTP redirect responses.
Affected products
n/a · n/a