nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-19374 CVE-2018-19374
HIGH
Zoho ManageEngine ADManager Plus 6.6 (Build < 6659) - Privilege Escalation
Record summary
CVE-2018-19374 has a selected CVSS score of 7.0 (high); EIP currently links 1 catalogued exploit.
Description
Zoho ManageEngine ADManager Plus 6.6 Build 6657 allows local users to gain privileges (after a reboot) by placing a Trojan horse file into the permissive bin directory.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBZoho ManageEngine ADManager Plus 6.6 (Build < 6659) - Privilege EscalationExploitDB exploitby Digital InterruptionNot analyzed1 file
References
2research.digitalinterruption.com
https://research.digitalinterruption.com/2019/04/15/privilege-escalation-in-manageengine-admanager-plus-6