Security Advisory

CVE-2020-10859

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-05-05 20:16:42
Last updated 2024-08-04 11:14:15
Assigner mitre
State PUBLISHED

Description

Zoho ManageEngine Desktop Central before 10.0.484 allows authenticated arbitrary file writes during ZIP archive extraction via Directory Traversal in a crafted AppDependency API request.