CVE-2020-10816: High severity ZohoCorp ManageEngine Applications Manager vulnerability
Zoho ManageEngine Applications Manager 14780 and before allows a remote unauthenticated attacker to register managed servers via AAMRequestProcessor servlet.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-10816?
CVE-2020-10816 is a vulnerability in Zoho ManageEngine Applications Manager that allows a remote unauthenticated attacker to register managed servers via AAMRequestProcessor servlet.
What is the severity of CVE-2020-10816?
The severity of CVE-2020-10816 is high with a CVSS score of 7.5.
Which version of Zoho ManageEngine Applications Manager is affected by CVE-2020-10816?
Zoho ManageEngine Applications Manager version 14.7-build14780 and before are affected by CVE-2020-10816.
How can an attacker exploit CVE-2020-10816?
An attacker can exploit CVE-2020-10816 by registering managed servers via the AAMRequestProcessor servlet.
How can I fix CVE-2020-10816?
To fix CVE-2020-10816, it is recommended to update Zoho ManageEngine Applications Manager to a version that is not affected by the vulnerability.