CVE Vulnerabilities

CVE-2023-38332

Published: Aug 04, 2023 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Zoho ManageEngine ADManager Plus through 7201 allow authenticated users to take over another users account via sensitive information disclosure.

Affected Software

NameVendorStart VersionEnd Version
Manageengine_admanager_plusZohocorp*7.2 (excluding)
Manageengine_admanager_plusZohocorp7.2-7200 (including)7.2-7200 (including)
Manageengine_admanager_plusZohocorp7.2-7201 (including)7.2-7201 (including)

References