← Back

CVE-2022-37024

nvd nist
Published: Aug 10, 2022Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, and OpUtils before 2022-07-29 through 2022-07-30 ( 125658, 126003, 126105, and 126120) allow authenticated users to make database changes that lead to remote code execution.

Affected (108)

7 products
Manageengine Firewall Analyzer
Manageengine Netflow Analyzer
Manageengine Opmanager
Manageengine Opmanager Msp
Manageengine Opmanager Plus
Manageengine Oputils
Configuration A
108 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Version 12.5 build125450
Version 12.5 build125451
Version 12.5 build125452
Version 12.5 build125453
Version 12.5 build125455
Version 12.5 build125456
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126101
Version 12.6 build126102
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126114
Version 12.6 build126115
Version 12.6 build126116
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125451
Version 12.5 build125452
Version 12.5 build125453
Version 12.5 build125455
Version 12.5 build125456
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126101
Version 12.6 build126102
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126114
Version 12.6 build126115
Version 12.6 build126116
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125451
Version 12.5 build125452
Version 12.5 build125453
Version 12.5 build125455
Version 12.5 build125456
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126101
Version 12.6 build126102
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126114
Version 12.6 build126115
Version 12.6 build126116
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125451
Version 12.5 build125452
Version 12.5 build125453
Version 12.5 build125455
Version 12.5 build125456
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126101
Version 12.6 build126102
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126114
Version 12.6 build126115
Version 12.6 build126116
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125656
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125656
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126117
Zohocorp
Version 12.5 build125450
Version 12.5 build125451
Version 12.5 build125452
Version 12.5 build125453
Version 12.5 build125455
Version 12.5 build125456
Version 12.5 build125664
Version 12.6 build126000
Version 12.6 build126001
Version 12.6 build126100
Version 12.6 build126101
Version 12.6 build126102
Version 12.6 build126103
Version 12.6 build126113
Version 12.6 build126114
Version 12.6 build126115
Version 12.6 build126116
Version 12.6 build126117

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.