
⚠️ CISA KEV UPDATE | high confidence CVE-2019-8394 added to CISA KEV Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization. ACTIVE EXPLOITATION CONFIRMED ATT&CK: Exploit Public-Facing Application (T1190) Source: CISA KEV | Reliability: A Link: https://nvd.nist.gov/vuln/detail/CVE-2019-8394 #CVE #CISA #KEV #threatintel #infosec
Post summary
The CISA KEV update confirms CVE-2019-8394 is actively exploited, affecting Zoho ManageEngine ServiceDesk Plus prior to version 10.0 build 10012 through a remote file upload vulnerability via the login‑page customization feature.
