Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fq7v-xj92-r9mr

Опубликовано: 02 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH servers (and user information) even if no SSH server or user is associated to the operator.

An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH servers (and user information) even if no SSH server or user is associated to the operator.

EPSS

Процентиль: 83%
0.02009
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 4.3
nvd
почти 4 года назад

An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH servers (and user information) even if no SSH server or user is associated to the operator.

EPSS

Процентиль: 83%
0.02009
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-668