CVE-2025-8309 | Zoho ManageEngine Asset Explorer privileges management (EUVD-2025-25343 / Nessus ID 261502)
A vulnerability described as critical has been identified in Zoho ManageEngine Asset Explorer, ServiceDesk Plus, ServiceDesk Plus MSP and SupportCenter Plus. This vulnerability affects unknown code. This manipulation causes improper privilege management.
This vulnerability is handled as CVE-2025-8309. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.