logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-2291

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-2291

Description:
Static credentials exist in the PostgreSQL data used in ManageEngine Access Manager Plus (AMP) build 4309, ManageEngine Password Manager Pro, and ManageEngine PAM360. These credentials could allow a malicious actor to modify configuration data that would escalate their permissions from that of a low-privileged user to an Administrative user.
Last updated date:
05/05/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
05/05/2023
Reference url to background

https://tenable.com/security/research/tra-2023-16

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy