Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cj6r-fr66-xm8j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remote authenticated users to obtain Admin access by using the name parameter in conjunction with a true value of the edit parameter.

Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remote authenticated users to obtain Admin access by using the name parameter in conjunction with a true value of the edit parameter.

EPSS

Процентиль: 79%
0.01279
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remote authenticated users to obtain Admin access by using the name parameter in conjunction with a true value of the edit parameter.

EPSS

Процентиль: 79%
0.01279
Низкий