CVE-2020-11518

Zoho ManageEngine ADSelfService Plus before 5815 allows unauthenticated remote code execution.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
zohocorpmanageengine_adselfservice_plus
𝑥
≤ 5.7
zohocorpmanageengine_adselfservice_plus
5.8
zohocorpmanageengine_adselfservice_plus
5.8:5800
zohocorpmanageengine_adselfservice_plus
5.8:5801
zohocorpmanageengine_adselfservice_plus
5.8:5802
zohocorpmanageengine_adselfservice_plus
5.8:5803
zohocorpmanageengine_adselfservice_plus
5.8:5804
zohocorpmanageengine_adselfservice_plus
5.8:5805
zohocorpmanageengine_adselfservice_plus
5.8:5806
zohocorpmanageengine_adselfservice_plus
5.8:5807
zohocorpmanageengine_adselfservice_plus
5.8:5808
zohocorpmanageengine_adselfservice_plus
5.8:5809
zohocorpmanageengine_adselfservice_plus
5.8:5810
zohocorpmanageengine_adselfservice_plus
5.8:5811
zohocorpmanageengine_adselfservice_plus
5.8:5812
zohocorpmanageengine_adselfservice_plus
5.8:5813
zohocorpmanageengine_adselfservice_plus
5.8:5814
𝑥
= Vulnerable software versions