CVE Published: 17/07/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2024 Source: ManageEngine |
Vendor: ManageEngine |
Product: DDI Central Status : PUBLISHED
CVE-2024-27311 Description
Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to directory traversal vulnerability which allows the user to upload new files to the server folder.
Metrics
CVSS Version: 3.1 |
Base Score: 5.5 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L