Логотип exploitDog
bind:CVE-2016-9489
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-9489

Количество 2

Количество 2

nvd логотип

CVE-2016-9489

больше 7 лет назад

In ManageEngine Applications Manager 12 and 13 before build 13200, an authenticated user is able to alter all of their own properties, including own group, i.e. changing their group to one with higher privileges like "ADMIN". A user is also able to change properties of another user, e.g. change another user's password.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-76xw-q73v-w245

больше 3 лет назад

In ManageEngine Applications Manager 12 and 13 before build 13200, an authenticated user is able to alter all of their own properties, including own group, i.e. changing their group to one with higher privileges like "ADMIN". A user is also able to change properties of another user, e.g. change another user's password.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-9489

In ManageEngine Applications Manager 12 and 13 before build 13200, an authenticated user is able to alter all of their own properties, including own group, i.e. changing their group to one with higher privileges like "ADMIN". A user is also able to change properties of another user, e.g. change another user's password.

CVSS3: 8.8
0%
Низкий
больше 7 лет назад
github логотип
GHSA-76xw-q73v-w245

In ManageEngine Applications Manager 12 and 13 before build 13200, an authenticated user is able to alter all of their own properties, including own group, i.e. changing their group to one with higher privileges like "ADMIN". A user is also able to change properties of another user, e.g. change another user's password.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу