ManageEngine DesktopCentral Incomplete Fix Arbitrary File Upload Vulnerability
BID:69491
Info
ManageEngine DesktopCentral Incomplete Fix Arbitrary File Upload Vulnerability
| Bugtraq ID: | 69491 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-5007 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 31 2014 12:00AM |
| Updated: | Aug 31 2014 12:00AM |
| Credit: | Pedro Ribeiro |
| Vulnerable: |
ZOHO Corporation ManageEngine DesktopCentral 8.0 build 80293 ZOHO Corporation ManageEngine DesktopCentral 8.0 build 80286 ZOHO Corporation ManageEngine DesktopCentral 9 build 90054 |
| Not Vulnerable: |
ZOHO Corporation ManageEngine DesktopCentral 9 build 90055 |
References
ManageEngine DesktopCentral Incomplete Fix Arbitrary File Upload Vulnerability
References:
References:
- Arbitrary file upload / remote code execution in ManageEngine Desktop Central / (Pedro Ribeiro)
- ManageEngine DesktopCentral HomePage (Zoho Corporation)