Versio.io

CVE-2020-28653

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 03-02-2021 05:15
Last modified: - 18-04-2022 05:23
Total changes: - 5

Description

Zoho ManageEngine OpManager Stable build before 125203 (and Released build before 125233) allows Remote Code Execution via the Smart Update Manager (SUM) servlet.

Common Vulnerability Scoring System (CVSS)

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Low
Attack complexity
Network
Attack vector
High
Availability
High
Confidentiality
High
Integrity
None
Privileges required
Unchanged
Scope
None
User interaction
9.8
Base score
3.9
5.9
Exploitability score
Impact score
 

Verification logic

OR
vendor=zohocorp AND product=manageengine_opmanager AND versionEndExcluding=12.5
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125000
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125002
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125100
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125101
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125102
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125108
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125110
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125111
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125112
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125113
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125114
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125116
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125117
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125118
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125120
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125121
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125123
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125124
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125125
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125136
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125137
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125139
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125140
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125143
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125144
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125145
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125156
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125157
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125158
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125159
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125161
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125163
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125174
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125175
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125176
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125177
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125178
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125180
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125181
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125192
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125193
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125194
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125195
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125196
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125197
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125198
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125201
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125204
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125212
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125213
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125214
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125215
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125216
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125228
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125229
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125230
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125231
vendor=zohocorp AND product=manageengine_opmanager AND version=12.5 AND update=build125232
 

Reference

 


Keywords

NVD

 

CVE-2020-28653

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.