Lucene search

K
cvelistFluid AttacksCVELIST:CVE-2022-23050
HistoryMay 24, 2022 - 6:02 p.m.

CVE-2022-23050

2022-05-2418:02:05
Fluid Attacks
www.cve.org
2
cve-2022-23050
manageengine appmanager15
authenticated admin user
upload dll file
dll hijack attack

AI Score

7.1

Confidence

High

EPSS

0.002

Percentile

61.5%

ManageEngine AppManager15 (Build No:15510) allows an authenticated admin user to upload a DLL file to perform a DLL hijack attack inside the β€˜working’ folder through the β€˜Upload Files / Binaries’ functionality.

CNA Affected

[
  {
    "product": "ManageEngine AppManager15",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Build No:15510"
      }
    ]
  }
]

AI Score

7.1

Confidence

High

EPSS

0.002

Percentile

61.5%

Related for CVELIST:CVE-2022-23050