CVE-2014-7862
The DCPluginServelet servlet in ManageEngine Desktop Central and Desktop Central MSP before build 90109 allows remote attackers to create administrator accounts via an addPlugInUser action.
Date published : 2018-01-04
http://www.securityfocus.com/bid/71849
http://www.securityfocus.com/archive/1/534356/100/0/threaded