← Back

CVE-2020-14008

nvd nist
Published: Sep 4, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

Zoho ManageEngine Applications Manager 14710 and before allows an authenticated admin user to upload a vulnerable jar in a specific location, which leads to remote code execution.

Affected (87)

1 product
Manageengine Applications Manager
Configuration A
87 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Up to 13.0
Version 14.0
Version 14.0 build14000
Version 14.0 build14010
Version 14.0 build14020
Version 14.0 build14030
Version 14.0 build14040
Version 14.0 build14050
Version 14.0 build14060
Version 14.0 build14070
Version 14.0 build14071
Version 14.0 build14072
Version 14.0 build14073
Version 14.0 build14080
Version 14.0 build14090
Version 14.0 build14100
Version 14.0 build14110
Version 14.0 build14120
Version 14.0 build14130
Version 14.0 build14140
Version 14.0 build14150
Version 14.0 build14160
Version 14.0 build14170
Version 14.0 build14180
Version 14.0 build14190
Version 14.0 build14200
Version 14.0 build14210
Version 14.0 build14220
Version 14.0 build14230
Version 14.0 build14240
Version 14.0 build14250
Version 14.0 build14260
Version 14.0 build14261
Version 14.0 build14262
Version 14.0 build14270
Version 14.0 build14280
Version 14.0 build14290
Version 14.0 build14300
Version 14.0 build14310
Version 14.0 build14330
Version 14.0 build14331
Version 14.0 build14332
Version 14.0 build14340
Version 14.0 build14350
Version 14.0 build14360
Version 14.0 build14361
Version 14.0 build14370
Version 14.0 build14380
Version 14.0 build14390
Version 14.0 build14400
Version 14.0 build14401
Version 14.0 build14410
Version 14.0 build14420
Version 14.0 build14430
Version 14.0 build14440
Version 14.0 build14450
Version 14.0 build14460
Version 14.0 build14470
Version 14.0 build14480
Version 14.0 build14490
Version 14.0 build14500
Version 14.0 build14510
Version 14.0 build14520
Version 14.0 build14530
Version 14.0 build14531
Version 14.0 build14532
Version 14.0 build14533
Version 14.0 build14540
Version 14.0 build14550
Version 14.0 build14560
Version 14.0 build14570
Version 14.0 build14580
Version 14.0 build14590
Version 14.0 build14600
Version 14.0 build14610
Version 14.0 build14620
Version 14.0 build14630
Version 14.0 build14660
Version 14.0 build14670
Version 14.0 build14681
Version 14.0 build14682
Version 14.0 build14683
Version 14.0 build14684
Version 14.0 build14685
Version 14.0 build14690
Version 14.0 build14700
Version 14.0 build14710

References (6)

Source: cve@mitre.org
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.