ZDI-22-1119 - Zohocorp Manageengine Opmanager Plus, Zohocorp Manageengine Opmanager Msp and Zohocorp Manageengine Oputils

Critical 9.8

This vulnerability allows remote attackers to bypass authentication on affected installations of ManageEngine Network Configuration Manager. Authentication is not required to exploit this vulnerability.

Affected software

Zohocorp Manageengine Opmanager Plus

Zohocorp Manageengine Opmanager Msp

Zohocorp Manageengine Oputils

Zohocorp Manageengine Netflow Analyzer

Zohocorp Manageengine Firewall Analyzer

Zohocorp Manageengine Network Configuration Manager

Zohocorp Manageengine Opmanager

Reference links

Get alerted to vulnerabilities in your software

CVE alerts, vulnerability alerts, latest versions and news matched to your software stack.