Описание
Zoho ManageEngine OpManager Stable build before 125203 (and Released build before 125233) allows Remote Code Execution via the Smart Update Manager (SUM) servlet.
Zoho ManageEngine OpManager Stable build before 125203 (and Released build before 125233) allows Remote Code Execution via the Smart Update Manager (SUM) servlet.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2020-28653
- https://www.manageengine.com/network-monitoring/help/read-me-complete.html#125203
- https://www.manageengine.com/network-monitoring/help/read-me-complete.html#125233
- http://packetstormsecurity.com/files/164231/ManageEngine-OpManager-SumPDU-Java-Deserialization.html
Связанные уязвимости
CVSS3: 9.8
nvd
около 5 лет назад
Zoho ManageEngine OpManager Stable build before 125203 (and Released build before 125233) allows Remote Code Execution via the Smart Update Manager (SUM) servlet.