Vulnerabilities > CVE-2023-35786 - XXE vulnerability in Zohocorp Manageengine Admanager Plus

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
zohocorp
CWE-611

Summary

Zoho ManageEngine ADManager Plus before 7183 allows admin users to exploit an XXE issue to view files.