CVE-2020-27995

SQL Injection in Zoho ManageEngine Applications Manager 14 before 14560 allows an attacker to execute commands on the server via the MyPage.do template_resid parameter.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 96%
VendorProductVersion
zohocorpmanageengine_applications_manager
14.0
zohocorpmanageengine_applications_manager
14.0:build14000
zohocorpmanageengine_applications_manager
14.0:build14010
zohocorpmanageengine_applications_manager
14.0:build14020
zohocorpmanageengine_applications_manager
14.0:build14030
zohocorpmanageengine_applications_manager
14.0:build14040
zohocorpmanageengine_applications_manager
14.0:build14050
zohocorpmanageengine_applications_manager
14.0:build14060
zohocorpmanageengine_applications_manager
14.0:build14070
zohocorpmanageengine_applications_manager
14.0:build14071
zohocorpmanageengine_applications_manager
14.0:build14072
zohocorpmanageengine_applications_manager
14.0:build14073
zohocorpmanageengine_applications_manager
14.0:build14080
zohocorpmanageengine_applications_manager
14.0:build14090
zohocorpmanageengine_applications_manager
14.0:build14100
zohocorpmanageengine_applications_manager
14.0:build14110
zohocorpmanageengine_applications_manager
14.0:build14120
zohocorpmanageengine_applications_manager
14.0:build14130
zohocorpmanageengine_applications_manager
14.0:build14140
zohocorpmanageengine_applications_manager
14.0:build14150
zohocorpmanageengine_applications_manager
14.0:build14160
zohocorpmanageengine_applications_manager
14.0:build14170
zohocorpmanageengine_applications_manager
14.0:build14180
zohocorpmanageengine_applications_manager
14.0:build14190
zohocorpmanageengine_applications_manager
14.0:build14200
zohocorpmanageengine_applications_manager
14.0:build14210
zohocorpmanageengine_applications_manager
14.0:build14220
zohocorpmanageengine_applications_manager
14.0:build14230
zohocorpmanageengine_applications_manager
14.0:build14240
zohocorpmanageengine_applications_manager
14.0:build14250
zohocorpmanageengine_applications_manager
14.0:build14260
zohocorpmanageengine_applications_manager
14.0:build14261
zohocorpmanageengine_applications_manager
14.0:build14262
zohocorpmanageengine_applications_manager
14.0:build14270
zohocorpmanageengine_applications_manager
14.0:build14280
zohocorpmanageengine_applications_manager
14.0:build14290
zohocorpmanageengine_applications_manager
14.0:build14300
zohocorpmanageengine_applications_manager
14.0:build14310
zohocorpmanageengine_applications_manager
14.0:build14330
zohocorpmanageengine_applications_manager
14.0:build14331
zohocorpmanageengine_applications_manager
14.0:build14332
zohocorpmanageengine_applications_manager
14.0:build14340
zohocorpmanageengine_applications_manager
14.0:build14350
zohocorpmanageengine_applications_manager
14.0:build14360
zohocorpmanageengine_applications_manager
14.0:build14361
zohocorpmanageengine_applications_manager
14.0:build14370
zohocorpmanageengine_applications_manager
14.0:build14380
zohocorpmanageengine_applications_manager
14.0:build14390
zohocorpmanageengine_applications_manager
14.0:build14400
zohocorpmanageengine_applications_manager
14.0:build14401
zohocorpmanageengine_applications_manager
14.0:build14410
zohocorpmanageengine_applications_manager
14.0:build14420
zohocorpmanageengine_applications_manager
14.0:build14430
zohocorpmanageengine_applications_manager
14.0:build14440
zohocorpmanageengine_applications_manager
14.0:build14450
zohocorpmanageengine_applications_manager
14.0:build14460
zohocorpmanageengine_applications_manager
14.0:build14470
zohocorpmanageengine_applications_manager
14.0:build14480
zohocorpmanageengine_applications_manager
14.0:build14490
zohocorpmanageengine_applications_manager
14.0:build14500
zohocorpmanageengine_applications_manager
14.0:build14510
zohocorpmanageengine_applications_manager
14.0:build14520
zohocorpmanageengine_applications_manager
14.0:build14530
zohocorpmanageengine_applications_manager
14.0:build14531
zohocorpmanageengine_applications_manager
14.0:build14532
zohocorpmanageengine_applications_manager
14.0:build14533
zohocorpmanageengine_applications_manager
14.0:build14540
zohocorpmanageengine_applications_manager
14.0:build14550
𝑥
= Vulnerable software versions