- OpManager: The RemodeCodeExecution(RCE) vulnerability occurring while testing scripts has been fixed (Reported by Pulse Security).
- OpManager: Path Traversal vulnerability in uploadMib API has been fixed (Reported by Pulse Security).
- OpManager: Unauthorised access for uploadMib API has been restricted. It can be accessed only by users with admin privileges.
OpManager: Previously, any type of input was accepted in UpdateDeviceDetails API’s parameter. This issue has been fixed (Reported by Pulse Security).
OpManager: Previously, OpManager files could be changed or modified by exploiting LFI vulnerability in uploadBusinessViewBG, importDeviceTemplate API. This issue has been fixed.
Other recent articles in the same category
6 July 2020
18 June 2020
17 June 2020
17 June 2020
16 June 2020
You may be interested in these other recent articles
18 February 2022 | Joshua Ball
Watch webinars on demand and listen to podcasts at your convenience. ManageEngine has launched their IAM and Cybersecurity on-demand events hub, a one-stop shop for on-demand webinars and podcasts. At the on-demand events hub, you’ll find: Carefully curated on-demand webinars from seven unique categories. Over 40 podcast episodes (and counting) on IAM and cybersecurity from three different podcast shows. The webinars and podcasts are regularly updated, so watch this space to ensure you don’t miss out on the latest episodes! Sign up today by clicking here. To find out more…Read more
ManageEngine positioned in the Gartner® Magic Quadrant™ for ITSM Tools for the second consecutive year
8 September 2021 | Nigel Arnold
The 2021 Gartner® Magic Quadrant™ for IT Service Management Tools is out, and ManageEngine has been included in this year’s report. This is the second…Read more