CVE-2023-47211
08.01.2024, 15:15
A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A specially crafted HTTP request can lead to arbitrary file creation. An attacker can send a malicious MiB file to trigger this vulnerability.
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_firewall_analyzer | 𝑥 < 12.7 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127000 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127101 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127130 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127131 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127187 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127244 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127257 |
| zohocorp | manageengine_firewall_analyzer | 12.7:build127259 |
| zohocorp | manageengine_netflow_analyzer | 𝑥 < 12.7 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127000 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127003 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127101 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127130 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127131 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127187 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127244 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127255 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127257 |
| zohocorp | manageengine_netflow_analyzer | 12.7:build127259 |
| zohocorp | manageengine_network_configuration_manager | 𝑥 < 12.7 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127000 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127102 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127105 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127132 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127243 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127257 |
| zohocorp | manageengine_network_configuration_manager | 12.7:build127259 |
| zohocorp | manageengine_opmanager | 𝑥 < 12.7 |
| zohocorp | manageengine_opmanager | 12.7:build127000 |
| zohocorp | manageengine_opmanager | 12.7:build127001 |
| zohocorp | manageengine_opmanager | 12.7:build127002 |
| zohocorp | manageengine_opmanager | 12.7:build127003 |
| zohocorp | manageengine_opmanager | 12.7:build127004 |
| zohocorp | manageengine_opmanager | 12.7:build127100 |
| zohocorp | manageengine_opmanager | 12.7:build127101 |
| zohocorp | manageengine_opmanager | 12.7:build127102 |
| zohocorp | manageengine_opmanager | 12.7:build127103 |
| zohocorp | manageengine_opmanager | 12.7:build127104 |
| zohocorp | manageengine_opmanager | 12.7:build127109 |
| zohocorp | manageengine_opmanager | 12.7:build127116 |
| zohocorp | manageengine_opmanager | 12.7:build127117 |
| zohocorp | manageengine_opmanager | 12.7:build127118 |
| zohocorp | manageengine_opmanager | 12.7:build127119 |
| zohocorp | manageengine_opmanager | 12.7:build127120 |
| zohocorp | manageengine_opmanager | 12.7:build127122 |
| zohocorp | manageengine_opmanager | 12.7:build127123 |
| zohocorp | manageengine_opmanager | 12.7:build127131 |
| zohocorp | manageengine_opmanager | 12.7:build127133 |
| zohocorp | manageengine_opmanager | 12.7:build127134 |
| zohocorp | manageengine_opmanager | 12.7:build127136 |
| zohocorp | manageengine_opmanager | 12.7:build127138 |
| zohocorp | manageengine_opmanager | 12.7:build127140 |
| zohocorp | manageengine_opmanager | 12.7:build127141 |
| zohocorp | manageengine_opmanager | 12.7:build127185 |
| zohocorp | manageengine_opmanager | 12.7:build127186 |
| zohocorp | manageengine_opmanager | 12.7:build127187 |
| zohocorp | manageengine_opmanager | 12.7:build127188 |
| zohocorp | manageengine_opmanager | 12.7:build127189 |
| zohocorp | manageengine_opmanager | 12.7:build127191 |
| zohocorp | manageengine_opmanager | 12.7:build127240 |
| zohocorp | manageengine_opmanager | 12.7:build127241 |
| zohocorp | manageengine_opmanager | 12.7:build127242 |
| zohocorp | manageengine_opmanager | 12.7:build127243 |
| zohocorp | manageengine_opmanager | 12.7:build127255 |
| zohocorp | manageengine_opmanager | 12.7:build127256 |
| zohocorp | manageengine_opmanager | 12.7:build127257 |
| zohocorp | manageengine_opmanager | 12.7:build127258 |
| zohocorp | manageengine_opmanager | 12.7:build127259 |
| zohocorp | manageengine_opmanager_msp | 𝑥 < 12.7 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127109 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127122 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127123 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127138 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127139 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127140 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127141 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127142 |
| zohocorp | manageengine_opmanager_msp | 12.7:build127259 |
| zohocorp | manageengine_opmanager_plus | 𝑥 < 12.7 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127109 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127122 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127123 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127138 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127139 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127140 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127141 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127142 |
| zohocorp | manageengine_opmanager_plus | 12.7:build127259 |
| zohocorp | manageengine_oputils | 𝑥 < 12.7 |
| zohocorp | manageengine_oputils | 12.7:build127101 |
| zohocorp | manageengine_oputils | 12.7:build127117 |
| zohocorp | manageengine_oputils | 12.7:build127134 |
| zohocorp | manageengine_oputils | 12.7:build127241 |
| zohocorp | manageengine_oputils | 12.7:build127242 |
| zohocorp | manageengine_oputils | 12.7:build127258 |
| zohocorp | manageengine_oputils | 12.7:build127259 |
𝑥
= Vulnerable software versions
References