Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An SSRF issue was discovered in Zoho Application Control Plus before version 10.0.511. The mail gateway configuration feature allows an attacker to perform a scan in order to discover open ports on a machine as well as available machines on the network segment on which the instance of the product is deployed.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
N/A
Vulnerability Title
Zoho Application Control Plus 信息泄露漏洞
Vulnerability Description
zoho application control plus是中国卓豪(zoho)的一套企业应用控制软件。该软件根据特定的控制规则,可以自动生成和维护应用白名单和黑名单。 Zoho Application Control Plus 10.0.511 之前版本存在信息泄露漏洞。邮件网关配置功能允许攻击者执行扫描,以便发现计算机上的开放端口以及部署了该产品实例的网段上的可用计算机。
CVSS Information
N/A
Vulnerability Type
N/A