CISA description
Zoho ManageEngine ServiceDesk Plus before 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication
Zoho · ManageEngine ServiceDesk Plus (SDP)
Zoho ManageEngine ServiceDesk Authentication Bypass Vulnerability
Zoho ManageEngine ServiceDesk Plus before 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication
Apply updates per vendor instructions.
Vulnerability data triggers these controls during assessment and continuous monitoring.