CVE-2020-16267
06.10.2020, 19:15
Zoho ManageEngine Applications Manager version 14740 and prior allows an authenticated SQL Injection via a crafted jsp request in the RCA module.
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_applications_manager | 14.7 |
| zohocorp | manageengine_applications_manager | 14.7 |
| zohocorp | manageengine_applications_manager | 14.7:build14700 |
| zohocorp | manageengine_applications_manager | 14.7:build14710 |
| zohocorp | manageengine_applications_manager | 14.7:build14720 |
| zohocorp | manageengine_applications_manager | 14.7:build14730 |
| zohocorp | manageengine_applications_manager | 14.7:build14740 |
𝑥
= Vulnerable software versions
References