CVE-2023-22624
Published Jan 17, 2023
Last updated 2 years ago
Overview
- Description
- Zoho ManageEngine Exchange Reporter Plus before 5708 allows attackers to conduct XXE attacks.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Severity
- HIGH
Weaknesses
- nvd@nist.gov
- CWE-611
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3DA0580F-8167-450E-A1E9-0F1F7FC7E2C9", "versionEndExcluding": "5.7" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5700:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E913F3D6-9F94-4130-94FF-37F4D81BAEF4" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5701:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "34D23B58-2BB8-40EE-952C-1595988335CC" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5702:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "322920C4-4487-4E44-9C40-2959F478A4FA" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5703:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3AD735B9-2CE2-46BA-9A14-A22E3FE21C6D" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5704:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "014DB85C-DB28-4EBB-971A-6F8F964CE6FE" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5705:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E9B0013-ABF8-4616-BC92-15DF9F5CB359" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5706:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B744F32-FD43-47B8-875C-6777177677CD" }, { "criteria": "cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:5.7:5707:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1BB6EEA-2BAA-4C48-8DA8-1E87B3DE611F" } ], "operator": "OR" } ] } ]