CVE-2019-17421

Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall Analyzer 12.4.072 allow local users to elevate privileges to root by overwriting this file with a malicious payload.
Configurations

Configuration 1

cpe:2.3:a:zohocorp:manageengine_firewall_analyzer:12.4:124072:*:*:*:*:*:*
cpe:2.3:a:zohocorp:manageengine_opmanager:12.4:build124072:*:*:*:*:*:*

Information

Published : 2019-11-21 03:15

Updated : 2021-04-29 06:17


NVD link : CVE-2019-17421

Mitre link : CVE-2019-17421

Products Affected
No products.
CWE
CWE-276

Incorrect Default Permissions