{
  "_links": {
    "capec": {
      "href": "/api/v1/vulnerability/cve-2021-44077/capec"
    },
    "cvss": {
      "href": "/api/v1/vulnerability/cve-2021-44077/cvss"
    },
    "cwe": {
      "href": "/api/v1/vulnerability/cve-2021-44077/cwe"
    },
    "enrichment": {
      "href": "/api/v1/vulnerability/cve-2021-44077/enrichment"
    },
    "gcve": {
      "href": "/api/v1/vulnerability/cve-2021-44077/gcve"
    },
    "self": {
      "href": "/api/v1/vulnerability/cve-2021-44077"
    },
    "sightings": {
      "href": "/api/v1/sightings/cve-2021-44077"
    }
  },
  "enrichments": {
    "cisa-kev": {
      "kev": true
    },
    "epss": {
      "epss": 0.93298,
      "kev": true,
      "percentile": 0.99833
    },
    "nuclei": {
      "nuclei": true,
      "nuclei_template": "http/cves/2021/CVE-2021-44077.yaml",
      "nuclei_template_severity": "critical",
      "nuclei_template_yaml": "id: CVE-2021-44077\n\ninfo:\n  name: Zoho ManageEngine ServiceDesk Plus - Remote Code Execution\n  author: Adam Crosser,gy741\n  severity: critical\n  description: Zoho ManageEngine ServiceDesk Plus before 11306, ServiceDesk Plus MSP before 10530, and SupportCenter Plus before 11014 are vulnerable to unauthenticated remote code execution.\n  impact: |\n    Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the affected system.\n  remediation: |\n    Apply the latest security patch or upgrade to a patched version of Zoho ManageEngine ServiceDesk Plus.\n  reference:\n    - https://www.cisa.gov/uscert/ncas/alerts/aa21-336a\n    - https://unit42.paloaltonetworks.com/tiltedtemple-manageengine-servicedesk-plus/\n    - https://github.com/horizon3ai/CVE-2021-44077\n    - https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/manageengine_servicedesk_plus_cve_2021_44077.rb\n    - https://nvd.nist.gov/vuln/detail/CVE-2021-44077\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\n    cvss-score: 9.8\n    cve-id: CVE-2021-44077\n    cwe-id: CWE-306\n    epss-score: 0.93298\n    epss-percentile: 0.99833\n    cpe: cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:11.1:11138:*:*:*:*:*:*\n  metadata:\n    max-request: 1\n    vendor: zohocorp\n    product: manageengine_servicedesk_plus\n    shodan-query: http.title:\"manageengine servicedesk plus\"\n    fofa-query: title=\"manageengine servicedesk plus\"\n    google-query: intitle:\"manageengine servicedesk plus\"\n  tags: cve2021,cve,rce,kev,msf,zoho,manageengine,zohocorp,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/RestAPI/ImportTechnicians\"\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        words:\n          - '<form name=\"ImportTechnicians\"'\n\n      - type: status\n        status:\n          - 200\n# digest: 490a0046304402203ad6b27cf05040d12b2308b4f92c8c467ec972f1564444aaea275c07384a7d37022039660eb44962de85d09275a96245d633dcf1877269f4e105ac6bac93d0e87f2f:922c64590222798bb761d5b6d8e72950"
    }
  },
  "vuln_id": "cve-2021-44077"
}