CVE Vulnerabilities

CVE-2020-11527

Published: Apr 04, 2020 | Modified: Jul 21, 2021
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

In Zoho ManageEngine OpManager before 12.4.181, an unauthenticated remote attacker can send a specially crafted URI to read arbitrary files.

Affected Software

Name Vendor Start Version End Version
Manageengine_opmanager Zohocorp * 12.4 (excluding)
Manageengine_opmanager Zohocorp 12.4 (including) 12.4 (including)
Manageengine_opmanager Zohocorp 12.4-build124000 (including) 12.4-build124000 (including)
Manageengine_opmanager Zohocorp 12.4-build124011 (including) 12.4-build124011 (including)
Manageengine_opmanager Zohocorp 12.4-build124012 (including) 12.4-build124012 (including)
Manageengine_opmanager Zohocorp 12.4-build124013 (including) 12.4-build124013 (including)
Manageengine_opmanager Zohocorp 12.4-build124014 (including) 12.4-build124014 (including)
Manageengine_opmanager Zohocorp 12.4-build124015 (including) 12.4-build124015 (including)
Manageengine_opmanager Zohocorp 12.4-build124016 (including) 12.4-build124016 (including)
Manageengine_opmanager Zohocorp 12.4-build124022 (including) 12.4-build124022 (including)
Manageengine_opmanager Zohocorp 12.4-build124023 (including) 12.4-build124023 (including)
Manageengine_opmanager Zohocorp 12.4-build124024 (including) 12.4-build124024 (including)
Manageengine_opmanager Zohocorp 12.4-build124025 (including) 12.4-build124025 (including)
Manageengine_opmanager Zohocorp 12.4-build124026 (including) 12.4-build124026 (including)
Manageengine_opmanager Zohocorp 12.4-build124027 (including) 12.4-build124027 (including)
Manageengine_opmanager Zohocorp 12.4-build124030 (including) 12.4-build124030 (including)
Manageengine_opmanager Zohocorp 12.4-build124033 (including) 12.4-build124033 (including)
Manageengine_opmanager Zohocorp 12.4-build124037 (including) 12.4-build124037 (including)
Manageengine_opmanager Zohocorp 12.4-build124039 (including) 12.4-build124039 (including)
Manageengine_opmanager Zohocorp 12.4-build124040 (including) 12.4-build124040 (including)
Manageengine_opmanager Zohocorp 12.4-build124041 (including) 12.4-build124041 (including)
Manageengine_opmanager Zohocorp 12.4-build124042 (including) 12.4-build124042 (including)
Manageengine_opmanager Zohocorp 12.4-build124043 (including) 12.4-build124043 (including)
Manageengine_opmanager Zohocorp 12.4-build124051 (including) 12.4-build124051 (including)
Manageengine_opmanager Zohocorp 12.4-build124053 (including) 12.4-build124053 (including)
Manageengine_opmanager Zohocorp 12.4-build124054 (including) 12.4-build124054 (including)
Manageengine_opmanager Zohocorp 12.4-build124056 (including) 12.4-build124056 (including)
Manageengine_opmanager Zohocorp 12.4-build124058 (including) 12.4-build124058 (including)
Manageengine_opmanager Zohocorp 12.4-build124065 (including) 12.4-build124065 (including)
Manageengine_opmanager Zohocorp 12.4-build124066 (including) 12.4-build124066 (including)
Manageengine_opmanager Zohocorp 12.4-build124067 (including) 12.4-build124067 (including)
Manageengine_opmanager Zohocorp 12.4-build124069 (including) 12.4-build124069 (including)
Manageengine_opmanager Zohocorp 12.4-build124070 (including) 12.4-build124070 (including)
Manageengine_opmanager Zohocorp 12.4-build124071 (including) 12.4-build124071 (including)
Manageengine_opmanager Zohocorp 12.4-build124074 (including) 12.4-build124074 (including)
Manageengine_opmanager Zohocorp 12.4-build124075 (including) 12.4-build124075 (including)
Manageengine_opmanager Zohocorp 12.4-build124081 (including) 12.4-build124081 (including)
Manageengine_opmanager Zohocorp 12.4-build124082 (including) 12.4-build124082 (including)
Manageengine_opmanager Zohocorp 12.4-build124085 (including) 12.4-build124085 (including)
Manageengine_opmanager Zohocorp 12.4-build124086 (including) 12.4-build124086 (including)
Manageengine_opmanager Zohocorp 12.4-build124087 (including) 12.4-build124087 (including)
Manageengine_opmanager Zohocorp 12.4-build124089 (including) 12.4-build124089 (including)
Manageengine_opmanager Zohocorp 12.4-build124095 (including) 12.4-build124095 (including)
Manageengine_opmanager Zohocorp 12.4-build124096 (including) 12.4-build124096 (including)
Manageengine_opmanager Zohocorp 12.4-build124097 (including) 12.4-build124097 (including)
Manageengine_opmanager Zohocorp 12.4-build124098 (including) 12.4-build124098 (including)
Manageengine_opmanager Zohocorp 12.4-build124099 (including) 12.4-build124099 (including)
Manageengine_opmanager Zohocorp 12.4-build124100 (including) 12.4-build124100 (including)
Manageengine_opmanager Zohocorp 12.4-build124101 (including) 12.4-build124101 (including)
Manageengine_opmanager Zohocorp 12.4-build124102 (including) 12.4-build124102 (including)
Manageengine_opmanager Zohocorp 12.4-build124168 (including) 12.4-build124168 (including)
Manageengine_opmanager Zohocorp 12.4-build124169 (including) 12.4-build124169 (including)
Manageengine_opmanager Zohocorp 12.4-build124175 (including) 12.4-build124175 (including)
Manageengine_opmanager Zohocorp 12.4-build124176 (including) 12.4-build124176 (including)
Manageengine_opmanager Zohocorp 12.4-build124178 (including) 12.4-build124178 (including)

References