CVE-2020-12116

Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attacker to read arbitrary files on the server by sending a crafted request.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
VendorProductVersion
zohocorpmanageengine_opmanager
𝑥
≤ 12.3
zohocorpmanageengine_opmanager
12.4
zohocorpmanageengine_opmanager
12.4:build124000
zohocorpmanageengine_opmanager
12.4:build124011
zohocorpmanageengine_opmanager
12.4:build124012
zohocorpmanageengine_opmanager
12.4:build124013
zohocorpmanageengine_opmanager
12.4:build124014
zohocorpmanageengine_opmanager
12.4:build124015
zohocorpmanageengine_opmanager
12.4:build124016
zohocorpmanageengine_opmanager
12.4:build124022
zohocorpmanageengine_opmanager
12.4:build124023
zohocorpmanageengine_opmanager
12.4:build124024
zohocorpmanageengine_opmanager
12.4:build124025
zohocorpmanageengine_opmanager
12.4:build124026
zohocorpmanageengine_opmanager
12.4:build124027
zohocorpmanageengine_opmanager
12.4:build124030
zohocorpmanageengine_opmanager
12.4:build124033
zohocorpmanageengine_opmanager
12.4:build124037
zohocorpmanageengine_opmanager
12.4:build124039
zohocorpmanageengine_opmanager
12.4:build124040
zohocorpmanageengine_opmanager
12.4:build124041
zohocorpmanageengine_opmanager
12.4:build124042
zohocorpmanageengine_opmanager
12.4:build124043
zohocorpmanageengine_opmanager
12.4:build124051
zohocorpmanageengine_opmanager
12.4:build124053
zohocorpmanageengine_opmanager
12.4:build124054
zohocorpmanageengine_opmanager
12.4:build124056
zohocorpmanageengine_opmanager
12.4:build124058
zohocorpmanageengine_opmanager
12.4:build124065
zohocorpmanageengine_opmanager
12.4:build124066
zohocorpmanageengine_opmanager
12.4:build124067
zohocorpmanageengine_opmanager
12.4:build124069
zohocorpmanageengine_opmanager
12.4:build124070
zohocorpmanageengine_opmanager
12.4:build124071
zohocorpmanageengine_opmanager
12.4:build124072
zohocorpmanageengine_opmanager
12.4:build124074
zohocorpmanageengine_opmanager
12.4:build124075
zohocorpmanageengine_opmanager
12.4:build124081
zohocorpmanageengine_opmanager
12.4:build124082
zohocorpmanageengine_opmanager
12.4:build124085
zohocorpmanageengine_opmanager
12.4:build124086
zohocorpmanageengine_opmanager
12.4:build124087
zohocorpmanageengine_opmanager
12.4:build124089
zohocorpmanageengine_opmanager
12.4:build124095
zohocorpmanageengine_opmanager
12.4:build124096
zohocorpmanageengine_opmanager
12.4:build124097
zohocorpmanageengine_opmanager
12.4:build124098
zohocorpmanageengine_opmanager
12.4:build124099
zohocorpmanageengine_opmanager
12.4:build124100
zohocorpmanageengine_opmanager
12.4:build124101
zohocorpmanageengine_opmanager
12.4:build124102
zohocorpmanageengine_opmanager
12.4:build124168
zohocorpmanageengine_opmanager
12.4:build124169
zohocorpmanageengine_opmanager
12.4:build124175
zohocorpmanageengine_opmanager
12.4:build124176
zohocorpmanageengine_opmanager
12.4:build124178
zohocorpmanageengine_opmanager
12.4:build124181
zohocorpmanageengine_opmanager
12.4:build124182
zohocorpmanageengine_opmanager
12.4:build124183
zohocorpmanageengine_opmanager
12.4:build124189
zohocorpmanageengine_opmanager
12.4:build124190
zohocorpmanageengine_opmanager
12.4:build124191
zohocorpmanageengine_opmanager
12.5:build125000
zohocorpmanageengine_opmanager
12.5:build125002
zohocorpmanageengine_opmanager
12.5:build125100
zohocorpmanageengine_opmanager
12.5:build125101
zohocorpmanageengine_opmanager
12.5:build125102
zohocorpmanageengine_opmanager
12.5:build125108
zohocorpmanageengine_opmanager
12.5:build125110
zohocorpmanageengine_opmanager
12.5:build125111
zohocorpmanageengine_opmanager
12.5:build125112
zohocorpmanageengine_opmanager
12.5:build125113
zohocorpmanageengine_opmanager
12.5:build125114
zohocorpmanageengine_opmanager
12.5:build125116
zohocorpmanageengine_opmanager
12.5:build125117
zohocorpmanageengine_opmanager
12.5:build125118
zohocorpmanageengine_opmanager
12.5:build125120
zohocorpmanageengine_opmanager
12.5:build125121
zohocorpmanageengine_opmanager
12.5:build125123
zohocorpmanageengine_opmanager
12.5:build125124
𝑥
= Vulnerable software versions