MEDIUM
An issue was discovered in Zoho ManageEngine DataSecurity Plus before 5.0.1 5012
Published Oct 9, 2019
4.3
MEDIUMCVSS 3.1
EPSS 2.12%
Description
An issue was discovered in Zoho ManageEngine DataSecurity Plus before 5.0.1 5012. An exposed service allows a basic user ("Operator" access level) to access the configuration file of the mail server (except for the password).
Affected products
No data.
OR
- 4.0
- 4.0
- 4.0
- 4.0
- 4.0
- 4.1
- 4.1
- 4.1
- 4.1
- 4.1
- 4.2
- 4.2
- 4.2
- 4.2
- 4.3
- 4.3
- 4.3
- 5.0
- 5.0
- 5.0
- 5.0
- 5.0
- 5.0
- 5.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- https://excellium-services.com/cert-xlm-advisory/cve-2019-17112/ x_refsource_MISCThird Party Advisory
- https://www.manageengine.com/data-security/release-notes.html x_refsource_MISCRelease NotesVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://excellium-services.com/cert-xlm-advisory/cve-2019-17112/ | x_refsource_MISCThird Party Advisory | |
| https://www.manageengine.com/data-security/release-notes.html | x_refsource_MISCRelease NotesVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 9, 2019
Updated Aug 5, 2024
Reserved Oct 3, 2019
Link CVE-2019-17112
CISA Vulnrichment
Updated n/a