Логотип exploitDog
bind:CVE-2019-11469
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-11469

Количество 2

Количество 2

nvd логотип

CVE-2019-11469

почти 7 лет назад

Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequently, an unauthenticated user can gain the authority of SYSTEM on the server by uploading a malicious file via the "Execute Program Action(s)" feature.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-9g5v-572f-c456

больше 3 лет назад

Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequently, an unauthenticated user can gain the authority of SYSTEM on the server by uploading a malicious file via the "Execute Program Action(s)" feature.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-11469

Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequently, an unauthenticated user can gain the authority of SYSTEM on the server by uploading a malicious file via the "Execute Program Action(s)" feature.

CVSS3: 9.8
5%
Низкий
почти 7 лет назад
github логотип
GHSA-9g5v-572f-c456

Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequently, an unauthenticated user can gain the authority of SYSTEM on the server by uploading a malicious file via the "Execute Program Action(s)" feature.

5%
Низкий
больше 3 лет назад

Уязвимостей на страницу