CVE-2024-36036

Published at:
2024-05-27T18:15:10.200
Source: 0fc0942c-577d-436f-ae8e-945763c79b02

Global infos:

Zoho ManageEngine ADAudit Plus versions 7260 and below allows unauthorized local agent machine users to access sensitive information and modifying the agent configuration.

CVE Status: Awaiting Analysis

References:

  • 0fc0942c-577d-436f-ae8e-945763c79b02
  • af854a3a-2127-422b-91ae-364da2661108
  • Metrics:

    AttributeValue
    Attack ComplexityHIGH
    Attack VectorLOCAL
    Availability ImpactNONE
    Base Score4.2
    Base SeverityMEDIUM
    Confidentiality ImpactLOW
    Integrity ImpactLOW
    Privileges RequiredLOW
    ScopeCHANGED
    User InteractionNONE
    Vector StringCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N
    Exploitability Score1.1
    Impact Score2.7
    Source0fc0942c-577d-436f-ae8e-945763c79b02
    TypeSecondary

    Links:

    Exploit-db
    Github