CVE-2023-38743

4 documents4 sources
Severity
7.2HIGH
EPSS
24.3%
top 3.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 11

Description

Zoho ManageEngine ADManager Plus before Build 7200 allows admin users to execute commands on the host machine.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 1.2 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

3
CVEList
CVE-2023-38743: Zoho ManageEngine ADManager Plus before Build 7200 allows admin users to execute commands on the host machine2023-09-11
GHSA
GHSA-fqc8-frh7-wj3f: Zoho ManageEngine ADManager Plus before Build 7200 allows admin users to execute commands on the host machine2023-09-11
VulnCheck
Zoho ManageEngine ADManager Plus Authenticated Vulnerability2023
CVE-2023-38743 (HIGH CVSS 7.2) | Zoho ManageEngine ADManager Plus be | cvebase.io