CVE-2020-15533
01.10.2020, 19:15
In Zoho ManageEngine Application Manager 14.7 Build 14730 (before 14684, and between 14689 and 14750), the AlarmEscalation module is vulnerable to unauthenticated SQL Injection attack.
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_applications_manager | 𝑥 < 14.6 |
| zohocorp | manageengine_applications_manager | 14.6 |
| zohocorp | manageengine_applications_manager | 14.6:build14680 |
| zohocorp | manageengine_applications_manager | 14.6:build14681 |
| zohocorp | manageengine_applications_manager | 14.6:build14682 |
| zohocorp | manageengine_applications_manager | 14.6:build14683 |
| zohocorp | manageengine_applications_manager | 14.6:build14690 |
| zohocorp | manageengine_applications_manager | 14.7 |
| zohocorp | manageengine_applications_manager | 14.7:build14700 |
| zohocorp | manageengine_applications_manager | 14.7:build14710 |
| zohocorp | manageengine_applications_manager | 14.7:build14720 |
| zohocorp | manageengine_applications_manager | 14.7:build14730 |
| zohocorp | manageengine_applications_manager | 14.7:build14740 |
𝑥
= Vulnerable software versions
References