CVE-2020-10859
05.05.2020, 21:15
Zoho ManageEngine Desktop Central before 10.0.484 allows authenticated arbitrary file writes during ZIP archive extraction via Directory Traversal in a crafted AppDependency API request.
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_desktop_central | 𝑥 < 10.0.484 |
𝑥
= Vulnerable software versions