ManageEngine.Multiple.Products.Directory.Traversal

description-logoDescription

This indicates an attack attempt against an Directory Traversal vulnerability in Multiple ManageEngine products.
The vulnerability is due to insufficient sanitizing of user supplied inputs in the application when handling HTTP requests. It allows a remote attacker to upload an arbitrary file onto vulnerable systems.

affected-products-logoAffected Products

ManageEngine OpManager 8 (build 88xx) through 11.4
ManageEngine IT360 10.3 and 10.4
ManageEngine Social IT Plus 11.0

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)