First published: Thu Oct 07 2021(Updated: )
Zoho ManageEngine ADManager Plus version 7110 and prior is vulnerable to path traversal which allows copying of files from one directory to another.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp ManageEngine ADManager Plus | <7.1 | |
Zohocorp ManageEngine ADManager Plus | =7.1 | |
Zohocorp ManageEngine ADManager Plus | =7.1-7100 | |
Zohocorp ManageEngine ADManager Plus | =7.1-7101 | |
Zohocorp ManageEngine ADManager Plus | =7.1-7102 | |
Zohocorp ManageEngine ADManager Plus | =7.1-7110 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-37922 is a vulnerability in Zoho ManageEngine ADManager Plus version 7110 and prior that allows path traversal, enabling the copying of files between directories.
CVE-2021-37922 affects Zoho ManageEngine ADManager Plus versions 7110 and prior by allowing an attacker to perform path traversal and copy files across directories.
CVE-2021-37922 has a severity rating of 5.3, which is considered medium.
To fix CVE-2021-37922 in Zoho ManageEngine ADManager Plus, update to version 7111 or later.
You can find more information about Zoho ManageEngine ADManager Plus on the official Zoho ManageEngine website.