CVE-2024-52323: Sensitive Data Exposure
Published Nov 27, 2024
·Updated
Zohocorp ManageEngine Analytics Plus versions below 6100 are vulnerable to authenticated sensitive data exposure which allows the users to retrieve sensitive tokens associated to the org-admin account.
Affected Software
2 affected components
ZohoCorp ManageEngine Analytics Plus<6100
ZohoCorp ManageEngine Analytics Plus<6.1
Event History
Nov 27, 2024
CVE Published
via MITRE·09:54 AM
Data Sourced
via MITRE·09:54 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-52323?
CVE-2024-52323 has a high severity rating due to its potential for sensitive data exposure.
2
How does CVE-2024-52323 affect Zohocorp ManageEngine Analytics Plus?
CVE-2024-52323 allows authenticated users to retrieve sensitive tokens associated with the organization admin account in versions below 6100.
3
How do I fix CVE-2024-52323?
To fix CVE-2024-52323, upgrade Zohocorp ManageEngine Analytics Plus to version 6100 or higher.
4
Who is affected by CVE-2024-52323?
Organizations using Zohocorp ManageEngine Analytics Plus versions prior to 6100 are vulnerable to CVE-2024-52323.
5
What type of vulnerability is CVE-2024-52323?
CVE-2024-52323 is classified as an authenticated sensitive data exposure vulnerability.