Medium severity4.3NVD Advisory· Published Apr 4, 2019· Updated Jun 17, 2026
CVE-2019-10273
CVE-2019-10273
Description
Information leakage vulnerability in the /mc login page in ManageEngine ServiceDesk Plus 9.3 software allows authenticated users to enumerate active users. Due to a flaw within the way the authentication is handled, an attacker is able to login and verify any active account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:9.3:*:*:*:*:*:*:*
- Range: 9.3
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/152439/ManageEngine-ServiceDesk-Plus-9.3-User-Enumeration.htmlnvdExploitThird Party AdvisoryVDB Entry
- 0x445.github.io/CVE-2019-10273/nvdExploitThird Party Advisory
- www.exploit-db.com/exploits/46674/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.