First published: Wed Nov 17 2021(Updated: )
Zoho Remote Access Plus Server Windows Desktop Binary fixed in 10.1.2132.6 is affected by a sensitive information disclosure vulnerability. Due to improper privilege management, the process launches as the logged in user, so memory dump can be done by non-admin also. Remotely, an attacker can dump all sensitive information including DB Connection string, entire IT infrastructure details, commands executed by IT admin including credentials, secrets, private keys and more.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho Manageengine Remote Access Plus Server | <10.1.2132.6 | |
Microsoft Windows | ||
All of | ||
Zoho Manageengine Remote Access Plus Server | <10.1.2132.6 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42956 is a sensitive information disclosure vulnerability affecting Zoho Remote Access Plus Server Windows Desktop Binary.
CVE-2021-42956 has a severity score of 8.8, which is considered high.
CVE-2021-42956 allows for a non-admin user to perform a memory dump, potentially exposing sensitive information.
No, Microsoft Windows is not vulnerable to CVE-2021-42956.
To fix CVE-2021-42956, update Zoho Remote Access Plus Server Windows Desktop Binary to version 10.1.2132.6 or higher.