Thursday, May 23, 2019

New vulnerability on the NVD: CVE-2017-11740

In Zoho ManageEngine Application Manager 13.1 Build 13100, the administrative user has the ability to upload files/binaries that can be executed upon the occurrence of an alarm. An attacker can abuse this functionality by uploading a malicious script that can be executed on the remote system.

Published at: May 23, 2019 at 07:29PM
View on website

No comments:

Post a Comment