NA

CVE-2022-36923

Published: 10/08/2022 Updated: 16/08/2022
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, Firewall Analyzer, and OpUtils prior to 2022-07-27 through 2022-07-28 (125657, 126002, 126104, and 126118) allow unauthenticated malicious users to obtain a user's API key, and then access external APIs.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zohocorp manageengine opmanager 12.5

zohocorp manageengine network configuration manager 12.5

zohocorp manageengine oputils 12.6

zohocorp manageengine oputils 12.5

zohocorp manageengine firewall analyzer 12.5

zohocorp manageengine netflow analyzer 12.5

zohocorp manageengine firewall analyzer 12.6

zohocorp manageengine netflow analyzer 12.6

zohocorp manageengine network configuration manager 12.6

zohocorp manageengine opmanager 12.6

zohocorp manageengine opmanager msp 12.5

zohocorp manageengine opmanager plus 12.6

zohocorp manageengine opmanager plus 12.5

zohocorp manageengine opmanager msp 12.6

Github Repositories

记录日常java学习

javasec或安全攻防文章 记录日常java学习 changxia3com/2022/05/09/Shiro%E5%8F%8D%E5%BA%8F%E5%88%97%E5%8C%96%E6%BC%8F%E6%B4%9E%E7%AC%94%E8%AE%B0%E4%BA%94%EF%BC%88%E5%AF%B9%E6%8A%97%E7%AF%87%EF%BC%89/#rememberMe%E9%94%AE%E7%BB%95%E8%BF%87 mpweixinqqcom/s/outtxUANOa406ErGleWjtQ githubcom/Firebasky/Java/tree/main/BypassSM 826 内存马