NA

CVE-2023-4769

Published: 03/11/2023 Updated: 13/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A SSRF vulnerability has been found in ManageEngine Desktop Central affecting version 9.1.0, specifically the /smtpConfig.do component. This vulnerability could allow an authenticated malicious user to launch targeted attacks, such as a cross-port attack, service enumeration and other attacks via HTTP requests.

Vulnerable Product Search on Vulmon Subscribe to Product

zohocorp manageengine desktop central 9.1.0