ZeroHour

CVE-2022-24446

CVSS 3.1
4.3 medium
EPSS
<1%p59
Published
()
Modified
Description

An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH servers (and user information) even if no SSH server or user is associated to the operator.

Vendors
zohocorp
Products
manageengine key manager plus
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.