7.8

CVE-2021-44652

Zoho ManageEngine O365 Manager Plus before Build 4416 allows remote code execution via BCP file overwrite through the ChangeDBAPI component.

Data is provided by the National Vulnerability Database (NVD)
ZohocorpManageengine O365 Manager Plus Version4.4 Update-
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4400
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4401
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4402
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4403
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4406
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4407
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4408
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4410
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4411
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4412
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4413
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4414
ZohocorpManageengine O365 Manager Plus Version4.4 Updatebuild4415
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.11% 0.762
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P