CVE-2024-27312: Authorization vulnerability in PAM360
Zohocorp ManageEngine PAM360 version 6601 is vulnerable to authorization vulnerability which allows a low-privileged user to perform admin actions. Note: This vulnerability affects only the PAM360 6600 version. No other versions are applicable to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-27312?
CVE-2024-27312 is considered a medium severity authorization vulnerability.
How do I fix CVE-2024-27312?
To remediate CVE-2024-27312, upgrade Zohocorp ManageEngine PAM360 to a version higher than 6.6 build 6600.
Who is affected by CVE-2024-27312?
CVE-2024-27312 only affects users utilizing Zohocorp ManageEngine PAM360 version 6.6 build 6600.
What type of vulnerability is CVE-2024-27312?
CVE-2024-27312 is an authorization vulnerability that allows low-privileged users to perform administrative actions.
Can CVE-2024-27312 be exploited remotely?
Yes, CVE-2024-27312 can potentially be exploited remotely by low-privileged users within the network.