Логотип exploitDog
bind:CVE-2018-11808
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-11808

Количество 2

Количество 2

nvd логотип

CVE-2018-11808

больше 7 лет назад

Incorrect Access Control in CustomFieldsFeedServlet in Zoho ManageEngine Applications Manager Version 13 before build 13740 allows an attacker to delete any file and read certain files on the server in the context of the user (which by default is "NT AUTHORITY / SYSTEM") by sending a specially crafted request to the server.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-rh5r-wvg8-j97g

больше 3 лет назад

Incorrect Access Control in CustomFieldsFeedServlet in Zoho ManageEngine Applications Manager Version 13 before build 13740 allows an attacker to delete any file and read certain files on the server in the context of the user (which by default is "NT AUTHORITY / SYSTEM") by sending a specially crafted request to the server.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-11808

Incorrect Access Control in CustomFieldsFeedServlet in Zoho ManageEngine Applications Manager Version 13 before build 13740 allows an attacker to delete any file and read certain files on the server in the context of the user (which by default is "NT AUTHORITY / SYSTEM") by sending a specially crafted request to the server.

CVSS3: 9.1
4%
Низкий
больше 7 лет назад
github логотип
GHSA-rh5r-wvg8-j97g

Incorrect Access Control in CustomFieldsFeedServlet in Zoho ManageEngine Applications Manager Version 13 before build 13740 allows an attacker to delete any file and read certain files on the server in the context of the user (which by default is "NT AUTHORITY / SYSTEM") by sending a specially crafted request to the server.

CVSS3: 9.1
4%
Низкий
больше 3 лет назад

Уязвимостей на страницу