Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qv63-549v-v8wj

Опубликовано: 25 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

ManageEngine AppManager15 (Build No:15510) allows an authenticated admin user to upload a DLL file to perform a DLL hijack attack inside the 'working' folder through the 'Upload Files / Binaries' functionality.

ManageEngine AppManager15 (Build No:15510) allows an authenticated admin user to upload a DLL file to perform a DLL hijack attack inside the 'working' folder through the 'Upload Files / Binaries' functionality.

EPSS

Процентиль: 96%
0.27373
Средний

7.2 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.2
nvd
больше 3 лет назад

ManageEngine AppManager15 (Build No:15510) allows an authenticated admin user to upload a DLL file to perform a DLL hijack attack inside the 'working' folder through the 'Upload Files / Binaries' functionality.

EPSS

Процентиль: 96%
0.27373
Средний

7.2 High

CVSS3

Дефекты

CWE-434