7.2
CVE-2021-44650
- EPSS 4.79%
- Veröffentlicht 12.01.2022 14:15:07
- Zuletzt bearbeitet 21.11.2024 06:31:19
- Erkennungen
Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings through the Admin ProxySettings and Tenant ProxySettings components.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zohocorp ≫ Manageengine M365 Manager Plus Version < 4.4
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update -
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4400
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4401
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4402
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4403
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4406
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4407
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4408
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4410
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4411
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4412
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4413
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4414
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4415
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4416
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4417
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4418
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.79% | 0.908 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.2 | 1.2 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|
https://www.manageengine.com/microsoft-365-management-reporting/release-notes.html?Build=4419