CVE-2021-41833
Published Nov 11, 2021Zoho ManageEngine Patch Connect Plus before 90099 is vulnerable to unauthenticated remote code execution.
Vendor/product archive
2 CVEs tagged to zohocorp / manageengine_patch_connect_plus — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Zoho ManageEngine Patch Connect Plus before 90099 is vulnerable to unauthenticated remote code execution.
Multiple Zoho ManageEngine products suffer from local privilege escalation due to improper permissions for the %SYSTEMDRIVE%\ManageEngine directory and its sub-folders. Moreover,…