Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-44515 PoC — ZOHO ManageEngine Desktop Central MSP 授权问题漏洞

Source
Associated Vulnerability
Title:ZOHO ManageEngine Desktop Central MSP 授权问题漏洞 (CVE-2021-44515)
Description:ZOHO ManageEngine Desktop Central MSP是美国卓豪(ZOHO)公司的一套面向MSP(管理服务提供商)的桌面机及移动设备管理软件。该软件可帮助MSP远程管理客户网络中的桌面机、服务器以及移动设备,并为各种规模的企业提供差异化的管理服务。 Zoho ManageEngine Desktop Central MSP存在授权问题漏洞,此漏洞的存在是由于在处理身份验证请求时出现错误。远程攻击者可利用该漏洞可以绕过身份验证过程并在桌面中心MSP服务器上执行任意代码。该漏洞允许远程攻击
Description
Zoho ManageEngine Desktop Central contains an authentication bypass vulnerability that could allow an attacker to execute arbitrary code in the Desktop Central MSP server.
File Snapshot

id: CVE-2021-44515 info: name: Zoho ManageEngine Desktop Central - Remote Code Execution author ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.