CVE-2020-13818
04.06.2020, 13:15
In Zoho ManageEngine OpManager before 125144, when <cachestart> is used, directory traversal validation can be bypassed.
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_opmanager | 𝑥 < 12.5 |
zohocorp | manageengine_opmanager | 12.5 |
zohocorp | manageengine_opmanager | 12.5:build125000 |
zohocorp | manageengine_opmanager | 12.5:build125002 |
zohocorp | manageengine_opmanager | 12.5:build125100 |
zohocorp | manageengine_opmanager | 12.5:build125101 |
zohocorp | manageengine_opmanager | 12.5:build125102 |
zohocorp | manageengine_opmanager | 12.5:build125108 |
zohocorp | manageengine_opmanager | 12.5:build125110 |
zohocorp | manageengine_opmanager | 12.5:build125111 |
zohocorp | manageengine_opmanager | 12.5:build125112 |
zohocorp | manageengine_opmanager | 12.5:build125113 |
zohocorp | manageengine_opmanager | 12.5:build125114 |
zohocorp | manageengine_opmanager | 12.5:build125116 |
zohocorp | manageengine_opmanager | 12.5:build125117 |
zohocorp | manageengine_opmanager | 12.5:build125118 |
zohocorp | manageengine_opmanager | 12.5:build125120 |
zohocorp | manageengine_opmanager | 12.5:build125121 |
zohocorp | manageengine_opmanager | 12.5:build125123 |
zohocorp | manageengine_opmanager | 12.5:build125124 |
zohocorp | manageengine_opmanager | 12.5:build125125 |
zohocorp | manageengine_opmanager | 12.5:build125136 |
zohocorp | manageengine_opmanager | 12.5:build125137 |
zohocorp | manageengine_opmanager | 12.5:build125139 |
zohocorp | manageengine_opmanager | 12.5:build125140 |
zohocorp | manageengine_opmanager | 12.5:build125143 |
𝑥
= Vulnerable software versions