📦 Manageengine Log360

by Zohocorp

🔍 What is Manageengine Log360?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-20136

CRITICAL CVSS 9.8 Nov 1, 2021

CVE-2021-20136 is an unauthenticated remote code execution vulnerability in ManageEngine Log360. Attackers can overwrite the database configuration to point to a malicious database, then force Log360 ...

CVE-2021-40175

CRITICAL CVSS 9.8 Aug 29, 2021

CVE-2021-40175 is a critical vulnerability in Zoho ManageEngine Log360 that allows attackers to upload arbitrary files without authentication, leading to remote code execution. This affects all Log360...

CVE-2021-40177

CRITICAL CVSS 9.8 Aug 29, 2021

This vulnerability in Zoho ManageEngine Log360 allows attackers to execute arbitrary code remotely by overwriting BCP files. It affects all Log360 installations before Build 5225, potentially compromi...

CVE-2021-40172

HIGH CVSS 8.8 Aug 29, 2021

This vulnerability allows attackers to perform Cross-Site Request Forgery (CSRF) attacks against Zoho ManageEngine Log360 proxy settings. Attackers can trick authenticated administrators into changing...

CVE-2021-40174

HIGH CVSS 8.8 Aug 29, 2021

This CVE describes a Cross-Site Request Forgery (CSRF) vulnerability in Zoho ManageEngine Log360 that allows attackers to disable logon security settings without user consent. Organizations using Log3...