CVE-2020-35765
05.02.2021, 14:15
doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows an authenticated SQL Injection via the resourceid parameter to showresource.do.
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_applications_manager | 𝑥 < 14.9 |
zohocorp | manageengine_applications_manager | 14.9 |
zohocorp | manageengine_applications_manager | 14.9:build14900 |
zohocorp | manageengine_applications_manager | 14.9:build14910 |
zohocorp | manageengine_applications_manager | 14.9:build14911 |
zohocorp | manageengine_applications_manager | 14.9:build14930 |
𝑥
= Vulnerable software versions
References