ZeroHour

CVE-2019-17602

CVSS 3.1
9.8 critical
EPSS
82%p100
Published
()
Modified
Description

An issue was discovered in Zoho ManageEngine OpManager before 12.4 build 124089. The OPMDeviceDetailsServlet servlet is prone to SQL injection. Depending on the configuration, this vulnerability could be exploited unauthenticated or authenticated.

Vendors
zohocorp
Products
manageengine opmanager
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.