CVE-2017-11740

CVE-2017-11740

In Zoho ManageEngine Application Manager 13.1 Build 13100, the administrative user has the ability to upload files/binaries that can be executed upon the occurrence of an alarm. An attacker can abuse this functionality by uploading a malicious script that can be executed on the remote system.

Source: CVE-2017-11740

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다