CVE-2022-41339: High severity ZohoCorp Manageengine Mobile Device Manager Plus vulnerability
In Zoho ManageEngine Mobile Device Manager Plus before 10.1.2207.5, the User Administration module allows privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-41339?
CVE-2022-41339 is a vulnerability in Zoho ManageEngine Mobile Device Manager Plus before version 10.1.2207.5 that allows privilege escalation through the User Administration module.
How severe is CVE-2022-41339?
CVE-2022-41339 has a severity rating of 7.8 (high).
What is the affected software version of CVE-2022-41339?
The affected software version of CVE-2022-41339 is Zoho ManageEngine Mobile Device Manager Plus 10.1.2207.4.
How can I fix CVE-2022-41339?
To fix CVE-2022-41339, update your Zoho ManageEngine Mobile Device Manager Plus installation to version 10.1.2207.5 or later.
Where can I find more information about CVE-2022-41339?
You can find more information about CVE-2022-41339 on the Zoho ManageEngine Mobile Device Manager Plus knowledge base page: https://www.manageengine.com/mobile-device-management/kb/CVE-2022-41339.html