7.2

CVE-2021-44650

Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings through the Admin ProxySettings and Tenant ProxySettings components.

Data is provided by the National Vulnerability Database (NVD)
ZohocorpManageengine M365 Manager Plus Version4.4 Update-
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4400
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4401
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4402
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4403
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4406
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4407
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4408
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4410
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4411
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4412
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4413
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4414
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4415
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4416
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4417
ZohocorpManageengine M365 Manager Plus Version4.4 Updatebuild4418
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 4.62% 0.882
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 1.2 5.9
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P