ManageEngine Log360 < Build 5229 REST API 限制绕过 RCE

critical Nessus 插件 ID 153636

版本 1.47

Nov 29, 2023, 3:21 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:H/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:H/RL:O/RC:C")
  • Exploit attributes ("Exploited by malware" set to "True")

Plugin Feed: 202311291521