Vulnerabilities > Zohocorp > Manageengine Assetexplorer > 1.0.34

DATE CVE VULNERABILITY TITLE RISK
2021-07-19 CVE-2021-20110 Improper Certificate Validation vulnerability in Zohocorp Manageengine Assetexplorer 1.0.34
Due to Manage Engine Asset Explorer Agent 1.0.34 not validating HTTPS certificates, an attacker on the network can statically configure their IP address to match the Asset Explorer's Server IP address.
network
low complexity
zohocorp CWE-295
critical
10.0