• caglararli@hotmail.com
  • 05386281520

Zoho ManageEngine RCE Vulnerability

Çağlar Arlı      -    19 Views

Zoho ManageEngine RCE Vulnerability

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus, Password Manager Pro and ADSelfService Plus, allow remote code execution due to the usage of an outdated third party dependency, Apache Santuario. Successful exploitation could lead to remote code execution and evidence of exploitation in the wild by Advanced Persistent Threat (APT) Groups.