← Back

CVE-2021-44525

nvd nist
Published: Dec 20, 2021Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Zoho ManageEngine PAM360 before build 5303 allows attackers to modify a few aspects of application state because of a filter bypass in which authentication is not required.

Affected (23)

1 product
Manageengine Pam360
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Version 4.0
Version 4.0 build4001
Version 4.0 build4002
Version 4.1
Version 4.1 build4100
Version 4.1 build4101
Version 4.5
Version 4.5 build4500
Version 4.5 build4501
Version 5.0
Version 5.0 build5000
Version 5.0 build5001
Version 5.0 build5002
Version 5.0 build5003
Version 5.0 build5004
Version 5.1
Version 5.1 build5100
Version 5.2
Version 5.2 build5200
Version 5.3
Version 5.3 build5300
Version 5.3 build5301
Version 5.3 build5302

Timeline

No history available yet.