CVE-2021-44525
20.12.2021, 16:15
Zoho ManageEngine PAM360 before build 5303 allows attackers to modify a few aspects of application state because of a filter bypass in which authentication is not required.Enginsight
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_pam360 | 4.0 |
zohocorp | manageengine_pam360 | 4.0:build4001 |
zohocorp | manageengine_pam360 | 4.0:build4002 |
zohocorp | manageengine_pam360 | 4.1 |
zohocorp | manageengine_pam360 | 4.1:build4100 |
zohocorp | manageengine_pam360 | 4.1:build4101 |
zohocorp | manageengine_pam360 | 4.5 |
zohocorp | manageengine_pam360 | 4.5:build4500 |
zohocorp | manageengine_pam360 | 4.5:build4501 |
zohocorp | manageengine_pam360 | 5.0 |
zohocorp | manageengine_pam360 | 5.0:build5000 |
zohocorp | manageengine_pam360 | 5.0:build5001 |
zohocorp | manageengine_pam360 | 5.0:build5002 |
zohocorp | manageengine_pam360 | 5.0:build5003 |
zohocorp | manageengine_pam360 | 5.0:build5004 |
zohocorp | manageengine_pam360 | 5.1 |
zohocorp | manageengine_pam360 | 5.1:build5100 |
zohocorp | manageengine_pam360 | 5.2 |
zohocorp | manageengine_pam360 | 5.2:build5200 |
zohocorp | manageengine_pam360 | 5.3 |
zohocorp | manageengine_pam360 | 5.3:build5300 |
zohocorp | manageengine_pam360 | 5.3:build5301 |
zohocorp | manageengine_pam360 | 5.3:build5302 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References