PT-2023-25314 · Zoho · Zoho Manageengine Admanager Plus

R00T4Dm

·

Published

2023-07-05

·

Updated

2023-07-10

·

CVE-2023-35786

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zoho ManageEngine ADManager Plus versions prior to 7183
Description The issue allows admin users to exploit an XXE problem to view files.
Recommendations For versions prior to 7183, update to version 7183 or later to resolve the issue.

Fix

XXE

Weakness Enumeration

Related Identifiers

CVE-2023-35786

Affected Products

Zoho Manageengine Admanager Plus