VYPR
High severity7.3NVD Advisory· Published Nov 17, 2021· Updated Jun 17, 2026

CVE-2021-42955

CVE-2021-42955

Description

Zoho Remote Access Plus Server Windows Desktop binary fixed in version 10.1.2132 is affected by an unauthorized password reset vulnerability. Because of the designed password reset mechanism, any non-admin Windows user can reset the password of the Remote Access Plus Server Admin account.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.