CVE-2021-44757

Description from NVD

Zoho ManageEngine Desktop Central before 10.1.2137.9 and Desktop Central MSP before 10.1.2137.9 allow attackers to bypass authentication, and read sensitive information or upload an arbitrary ZIP archive to the server.

Information Acquisition Date:2022-01-31T16:40Z
CVSS 2.0: 6.4 MEDIUM CVSS 3.x: 9.1 CRITICAL

▼ CVSS3 Vec CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

▼ CVSS2 Vec AV:N/AC:L/Au:N/C:P/I:P/A:N

NVD References

 https://pitstop.manageengine.com/portal/en/community/topic/a-critical-security-patch-released-in-desktop-central-and-desktop-central-msp-for-cve-2021-44757-17-1-2022
     source:MISC
     tags:Vendor Advisory    

Refer to Information on External Sites

CVE InfomationExploits or more Infomation
mitreEXPLOIT DATABASE
NVD0day.today
vulmon.comgithub
CVE DetailsTwitter
JVN ENG JPN
Reconshell

Software Tag: Wordpress(17 tweets)



List of frequently cited URLs

URLNum of Times Referred to
https://alerts.vulmon.com/?utm_source=twitter&utm_medium=so...259
https://cvetrends.com51
https://pitstop.manageengine.com/portal/en/community/topic/...10
https://securityaffairs.co/wordpress/126828/security/zoho-d...6
https://thehackernews.com/2022/01/zoho-releases-patch-for-c...5
https://threatpost.com/critical-manageengine-desktop-server...4
https://securityonline.info/cve-2021-44757-manageengine-des...3

▼ Show Information from Twitter(104)


List of frequently cited URLs

URLNum of Times Referred to
alerts.vulmon.com259
cvetrends.com51
pitstop.manageengine.com10
securityaffairs.co6
thehackernews.com5
threatpost.com4
securityonline.info3

▼ Show Information from Twitter(104)


GitHub Search Results: Up to 10
NameURL
No Data

GitHub Search Results: Up to 10
NameURL
No Data

2022/02/14 Score : 1
Added Har-sia Database : 2022/01/18
Last Modified : 2022/02/14
Highest Scored Date : 2022/01/18
Highest Score : 68