Lucene search

K
githubexploitD93AD4F3-228E-5F05-A21F-9D852E25F569
HistoryJan 17, 2023 - 9:26 p.m.

Exploit for Improper Input Validation in Zohocorp Manageengine Access Manager Plus

2023-01-1721:26:28
233
cve-2022-47966
pre-authentication
remote code execution
manageengine
products
apache
santuario
xmlsec
poc
vulnerability
java
runtime.exec
mitigation
update
horizon3.ai
attack team
twitter
academic research.

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

10

Confidence

High

EPSS

0.975

Percentile

100.0%

CVE-2022-47966

POC for CVE-2022-47966 affecting the following …

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

10

Confidence

High

EPSS

0.975

Percentile

100.0%