CVE-2024-27311

Published Jul 17, 2024

Last updated 4 months ago

Overview

Description
Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to directory traversal vulnerability which allows the user to upload new files to the server folder.
Source
0fc0942c-577d-436f-ae8e-945763c79b02
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-434
0fc0942c-577d-436f-ae8e-945763c79b02
CWE-434

Social media

Hype score
Not currently trending

Configurations