← Back to CVE List
CVE-2016-4890
ZOHO ManageEngine ServiceDesk Plus before 9.2 uses an insecure method for generating cookies, which makes it easier for attackers to obtain sensitive password information by leveraging access to a cookie.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt