CVE-2022-40770 | Zoho ManageEngine ServiceDesk Plus invokeDataUploadTool command injection (ZDI-22-1611)
A vulnerability was found in Zoho ManageEngine ServiceDesk Plus. It has been declared as critical. This vulnerability affects the function invokeDataUploadTool. The manipulation leads to command injection.
This vulnerability was named CVE-2022-40770. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.