CVE Database
/

CVE-2014-0344

Back to search

CVE-2014-0344

Published: Mar 29, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remote authenticated users to obtain Admin access by using the name parameter in conjunction with a true value of the edit parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

66499
vdb-entry
x_refsource_BID
VU#140886
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now