Zoho Password Manager Pro XML-RPC...

- AV AC AU C I A
发布: 2022-08-03
修订: 2024-12-11

This Metasploit module exploits a Java deserialization vulnerability in Zoho ManageEngine Pro before 12101 and PAM360 before 5510. Unauthenticated attackers can send a crafted XML-RPC request containing malicious serialized data to /xmlrpc to gain remote command execution as the SYSTEM user.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息