9.8

CVE-2021-43319

Zoho ManageEngine Network Configuration Manager before 125488 is vulnerable to command injection due to improper validation in the Ping functionality.

Data is provided by the National Vulnerability Database (NVD)
ZohocorpManageengine Network Configuration Manager Version11.0 Updatebuild11000
ZohocorpManageengine Network Configuration Manager Version12.0 Updatebuild12000
ZohocorpManageengine Network Configuration Manager Version12.1 Updatebuild12100
ZohocorpManageengine Network Configuration Manager Version12.2 Updatebuild12200
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild12300
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123008
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123023
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123035
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123052
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123055
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123057
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123064
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123069
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123070
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123083
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123091
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123105
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123106
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123123
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123129
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123137
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123151
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123156
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123159
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123169
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123177
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123179
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123191
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123194
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123206
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123207
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123214
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123215
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123217
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123218
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123222
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123223
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123231
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123237
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123239
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123274
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123277
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123279
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123288
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123304
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123306
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123312
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123323
ZohocorpManageengine Network Configuration Manager Version12.3 Updatebuild123327
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124000
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124022
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124024
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124026
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124031
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124041
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124043
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124057
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124073
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124079
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124094
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124095
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124098
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124099
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124103
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124104
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124168
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124172
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124176
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124177
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124181
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124186
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124188
ZohocorpManageengine Network Configuration Manager Version12.4 Updatebuild124196
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125000
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125108
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125112
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125115
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125116
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125120
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125121
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125125
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125129
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125136
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125142
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125149
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125180
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125195
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125199
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125212
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125213
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125216
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125228
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125232
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125233
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125234
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125323
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125325
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125327
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125329
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125343
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125345
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125358
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125362
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125363
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125378
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125392
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125399
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125417
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125436
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125445
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125455
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125465
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125469
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125471
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125482
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125483
ZohocorpManageengine Network Configuration Manager Version12.5 Updatebuild125485
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 74.22% 0.987
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.