9.8

CVE-2021-44514

OpUtils in Zoho ManageEngine OpManager 12.5 before 125490 mishandles authentication for a few audit directories.

Data is provided by the National Vulnerability Database (NVD)
ZohocorpManageengine Opmanager Version12.5 Update-
ZohocorpManageengine Opmanager Version12.5 Updatebuild125000
ZohocorpManageengine Opmanager Version12.5 Updatebuild125002
ZohocorpManageengine Opmanager Version12.5 Updatebuild125100
ZohocorpManageengine Opmanager Version12.5 Updatebuild125101
ZohocorpManageengine Opmanager Version12.5 Updatebuild125102
ZohocorpManageengine Opmanager Version12.5 Updatebuild125108
ZohocorpManageengine Opmanager Version12.5 Updatebuild125110
ZohocorpManageengine Opmanager Version12.5 Updatebuild125111
ZohocorpManageengine Opmanager Version12.5 Updatebuild125112
ZohocorpManageengine Opmanager Version12.5 Updatebuild125113
ZohocorpManageengine Opmanager Version12.5 Updatebuild125114
ZohocorpManageengine Opmanager Version12.5 Updatebuild125116
ZohocorpManageengine Opmanager Version12.5 Updatebuild125117
ZohocorpManageengine Opmanager Version12.5 Updatebuild125118
ZohocorpManageengine Opmanager Version12.5 Updatebuild125120
ZohocorpManageengine Opmanager Version12.5 Updatebuild125121
ZohocorpManageengine Opmanager Version12.5 Updatebuild125123
ZohocorpManageengine Opmanager Version12.5 Updatebuild125124
ZohocorpManageengine Opmanager Version12.5 Updatebuild125125
ZohocorpManageengine Opmanager Version12.5 Updatebuild125136
ZohocorpManageengine Opmanager Version12.5 Updatebuild125137
ZohocorpManageengine Opmanager Version12.5 Updatebuild125139
ZohocorpManageengine Opmanager Version12.5 Updatebuild125140
ZohocorpManageengine Opmanager Version12.5 Updatebuild125143
ZohocorpManageengine Opmanager Version12.5 Updatebuild125144
ZohocorpManageengine Opmanager Version12.5 Updatebuild125145
ZohocorpManageengine Opmanager Version12.5 Updatebuild125156
ZohocorpManageengine Opmanager Version12.5 Updatebuild125157
ZohocorpManageengine Opmanager Version12.5 Updatebuild125158
ZohocorpManageengine Opmanager Version12.5 Updatebuild125159
ZohocorpManageengine Opmanager Version12.5 Updatebuild125161
ZohocorpManageengine Opmanager Version12.5 Updatebuild125163
ZohocorpManageengine Opmanager Version12.5 Updatebuild125174
ZohocorpManageengine Opmanager Version12.5 Updatebuild125175
ZohocorpManageengine Opmanager Version12.5 Updatebuild125176
ZohocorpManageengine Opmanager Version12.5 Updatebuild125177
ZohocorpManageengine Opmanager Version12.5 Updatebuild125178
ZohocorpManageengine Opmanager Version12.5 Updatebuild125180
ZohocorpManageengine Opmanager Version12.5 Updatebuild125181
ZohocorpManageengine Opmanager Version12.5 Updatebuild125192
ZohocorpManageengine Opmanager Version12.5 Updatebuild125193
ZohocorpManageengine Opmanager Version12.5 Updatebuild125194
ZohocorpManageengine Opmanager Version12.5 Updatebuild125195
ZohocorpManageengine Opmanager Version12.5 Updatebuild125196
ZohocorpManageengine Opmanager Version12.5 Updatebuild125197
ZohocorpManageengine Opmanager Version12.5 Updatebuild125198
ZohocorpManageengine Opmanager Version12.5 Updatebuild125201
ZohocorpManageengine Opmanager Version12.5 Updatebuild125204
ZohocorpManageengine Opmanager Version12.5 Updatebuild125212
ZohocorpManageengine Opmanager Version12.5 Updatebuild125213
ZohocorpManageengine Opmanager Version12.5 Updatebuild125214
ZohocorpManageengine Opmanager Version12.5 Updatebuild125215
ZohocorpManageengine Opmanager Version12.5 Updatebuild125216
ZohocorpManageengine Opmanager Version12.5 Updatebuild125228
ZohocorpManageengine Opmanager Version12.5 Updatebuild125229
ZohocorpManageengine Opmanager Version12.5 Updatebuild125230
ZohocorpManageengine Opmanager Version12.5 Updatebuild125231
ZohocorpManageengine Opmanager Version12.5 Updatebuild125232
ZohocorpManageengine Opmanager Version12.5 Updatebuild125233
ZohocorpManageengine Opmanager Version12.5 Updatebuild125312
ZohocorpManageengine Opmanager Version12.5 Updatebuild125323
ZohocorpManageengine Opmanager Version12.5 Updatebuild125324
ZohocorpManageengine Opmanager Version12.5 Updatebuild125326
ZohocorpManageengine Opmanager Version12.5 Updatebuild125328
ZohocorpManageengine Opmanager Version12.5 Updatebuild125329
ZohocorpManageengine Opmanager Version12.5 Updatebuild125340
ZohocorpManageengine Opmanager Version12.5 Updatebuild125341
ZohocorpManageengine Opmanager Version12.5 Updatebuild125342
ZohocorpManageengine Opmanager Version12.5 Updatebuild125343
ZohocorpManageengine Opmanager Version12.5 Updatebuild125344
ZohocorpManageengine Opmanager Version12.5 Updatebuild125346
ZohocorpManageengine Opmanager Version12.5 Updatebuild125358
ZohocorpManageengine Opmanager Version12.5 Updatebuild125359
ZohocorpManageengine Opmanager Version12.5 Updatebuild125360
ZohocorpManageengine Opmanager Version12.5 Updatebuild125361
ZohocorpManageengine Opmanager Version12.5 Updatebuild125362
ZohocorpManageengine Opmanager Version12.5 Updatebuild125364
ZohocorpManageengine Opmanager Version12.5 Updatebuild125366
ZohocorpManageengine Opmanager Version12.5 Updatebuild125367
ZohocorpManageengine Opmanager Version12.5 Updatebuild125375
ZohocorpManageengine Opmanager Version12.5 Updatebuild125376
ZohocorpManageengine Opmanager Version12.5 Updatebuild125377
ZohocorpManageengine Opmanager Version12.5 Updatebuild125378
ZohocorpManageengine Opmanager Version12.5 Updatebuild125379
ZohocorpManageengine Opmanager Version12.5 Updatebuild125380
ZohocorpManageengine Opmanager Version12.5 Updatebuild125381
ZohocorpManageengine Opmanager Version12.5 Updatebuild125382
ZohocorpManageengine Opmanager Version12.5 Updatebuild125386
ZohocorpManageengine Opmanager Version12.5 Updatebuild125392
ZohocorpManageengine Opmanager Version12.5 Updatebuild125393
ZohocorpManageengine Opmanager Version12.5 Updatebuild125394
ZohocorpManageengine Opmanager Version12.5 Updatebuild125397
ZohocorpManageengine Opmanager Version12.5 Updatebuild125398
ZohocorpManageengine Opmanager Version12.5 Updatebuild125399
ZohocorpManageengine Opmanager Version12.5 Updatebuild125405
ZohocorpManageengine Opmanager Version12.5 Updatebuild125410
ZohocorpManageengine Opmanager Version12.5 Updatebuild125411
ZohocorpManageengine Opmanager Version12.5 Updatebuild125413
ZohocorpManageengine Opmanager Version12.5 Updatebuild125414
ZohocorpManageengine Opmanager Version12.5 Updatebuild125415
ZohocorpManageengine Opmanager Version12.5 Updatebuild125416
ZohocorpManageengine Opmanager Version12.5 Updatebuild125417
ZohocorpManageengine Opmanager Version12.5 Updatebuild125420
ZohocorpManageengine Opmanager Version12.5 Updatebuild125428
ZohocorpManageengine Opmanager Version12.5 Updatebuild125430
ZohocorpManageengine Opmanager Version12.5 Updatebuild125431
ZohocorpManageengine Opmanager Version12.5 Updatebuild125432
ZohocorpManageengine Opmanager Version12.5 Updatebuild125433
ZohocorpManageengine Opmanager Version12.5 Updatebuild125434
ZohocorpManageengine Opmanager Version12.5 Updatebuild125437
ZohocorpManageengine Opmanager Version12.5 Updatebuild125446
ZohocorpManageengine Opmanager Version12.5 Updatebuild125448
ZohocorpManageengine Opmanager Version12.5 Updatebuild125450
ZohocorpManageengine Opmanager Version12.5 Updatebuild125451
ZohocorpManageengine Opmanager Version12.5 Updatebuild125452
ZohocorpManageengine Opmanager Version12.5 Updatebuild125453
ZohocorpManageengine Opmanager Version12.5 Updatebuild125455
ZohocorpManageengine Opmanager Version12.5 Updatebuild125466
ZohocorpManageengine Opmanager Version12.5 Updatebuild125467
ZohocorpManageengine Opmanager Version12.5 Updatebuild125468
ZohocorpManageengine Opmanager Version12.5 Updatebuild125469
ZohocorpManageengine Opmanager Version12.5 Updatebuild125470
ZohocorpManageengine Opmanager Version12.5 Updatebuild125482
ZohocorpManageengine Opmanager Version12.5 Updatebuild125483
ZohocorpManageengine Opmanager Version12.5 Updatebuild125485
ZohocorpManageengine Opmanager Version12.5 Updatebuild125486
ZohocorpManageengine Opmanager Version12.5 Updatebuild125487
ZohocorpManageengine Opmanager Version12.5 Updatebuild125488
ZohocorpManageengine Opmanager Version12.5 Updatebuild125489
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.04% 0.897
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.