CVE-2014-7862 | Zoho ManageEngine Desktop Central/Desktop Central MSP 10.1.2137.2 DCPluginServelet Servlet addPlugInUser Account access control (ID 129769 / EDB-43892)
A vulnerability was found in Zoho ManageEngine Desktop Central and Desktop Central MSP 10.1.2137.2. It has been declared as critical. This vulnerability affects the function addPlugInUser of the component DCPluginServelet Servlet. The manipulation leads to improper access controls (Account).
This vulnerability was named CVE-2014-7862. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.