Zoho ManageEngine M365 Manager Plus是印度Zoho公司的一个广泛的 Microsoft 365 工具。用于报告、管理、监控、审核和创建关键活动的警报。 Zoho ManageEngine M365 Manager Plus 4421之前版本存在安全漏洞,该漏洞源于软件对文件上传缺少有效的过滤和限制。攻击者可以通过上传特制文件实现远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-43284 | Victure WR1200信任管理问题漏洞 | |
| CVE-2021-40101 | PortlandLabs Concrete CMS 安全漏洞 | |
| CVE-2021-42564 | Cryptshare Ag Cryptshare 输入验证错误漏洞 | |
| CVE-2021-31787 | Actions ATS2815 输入验证错误漏洞 | |
| CVE-2021-43319 | Zoho Corporation Zoho ManageEngine Network Configuration Manager 命令注入漏洞 | |
| CVE-2021-22095 | Spring AMQP 代码问题漏洞 | |
| CVE-2021-43296 | Zoho ManageEngine SupportCenter Plus 代码问题漏洞 | |
| CVE-2021-43295 | Zoho ManageEngine SupportCenter Plus 跨站脚本漏洞 | |
| CVE-2021-43294 | Zoho ManageEngine SupportCenter Plus 跨站脚本漏洞 | |
| CVE-2021-41677 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2021-43283 | Victure WR1200 操作系统命令注入漏洞 | |
| CVE-2021-43282 | Victure WR1200 信任管理问题漏洞 | |
| CVE-2021-44230 | PortSwigger Burp Suite 访问控制错误漏洞 | |
| CVE-2021-43202 | Jetbrains JetBrains TeamCity 访问控制错误漏洞 | |
| CVE-2021-43998 | HashiCorp Vault 安全漏洞 | |
| CVE-2021-41679 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2021-41678 | Open Solutions For Education openSIS SQL注入漏洞 |
No comments yet