Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hgc7-q3qg-xcgm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser account, which allows remote authenticated users to obtain administrator access by leveraging knowledge of this password.

ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser account, which allows remote authenticated users to obtain administrator access by leveraging knowledge of this password.

EPSS

Процентиль: 99%
0.80848
Высокий

Связанные уязвимости

nvd
больше 10 лет назад

ZOHO ManageEngine OpManager 11.5 build 11600 and earlier uses a hardcoded password of "plugin" for the IntegrationUser account, which allows remote authenticated users to obtain administrator access by leveraging knowledge of this password.

EPSS

Процентиль: 99%
0.80848
Высокий