NA

CVE-2022-38772

Published: 29/08/2022 Updated: 02/09/2022
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, and OpUtils prior to 125658, 126003, 126105, and 126120 allow authenticated users to make database changes that lead to remote code execution in the NMAP feature.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zohocorp manageengine opmanager 12.5

zohocorp manageengine network configuration manager 12.5

zohocorp manageengine netflow analyzer 12.6

zohocorp manageengine netflow analyzer 12.5

zohocorp manageengine network configuration manager 12.6

zohocorp manageengine oputils 12.5

zohocorp manageengine oputils 12.6

zohocorp manageengine opmanager 12.6

zohocorp manageengine opmanager msp 12.6

zohocorp manageengine opmanager msp 12.5

zohocorp manageengine opmanager plus 12.6

zohocorp manageengine opmanager plus 12.5