7.2

CVE-2021-44650

Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings through the Admin ProxySettings and Tenant ProxySettings components.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update -
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4400
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4401
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4402
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4403
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4406
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4407
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4408
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4410
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4411
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4412
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4413
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4414
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4415
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4416
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4417
Zohocorp ≫ Manageengine M365 Manager Plus Version 4.4 Update build4418
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.79% 0.908
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 1.2 5.9
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
NIST 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://www.manageengine.com/microsoft-365-management-reporting/release-notes.html?Build=4419
Vendor Advisory