PT-2024-21814 · Zohocorp · Manageengine Pam360

Published

2024-05-20

·

Updated

2024-11-25

·

CVE-2024-27312

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Zohocorp ManageEngine PAM360 version 6601
Description The issue allows a low-privileged user to perform admin actions due to an authorization vulnerability.
Recommendations For Zohocorp ManageEngine PAM360 version 6601, update to a version that fixes the authorization vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-27312

Affected Products

Manageengine Pam360