Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall Analyzer 12.4.072 allow local users to elevate privileges to root by overwriting this file with a malicious payload.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-11-21T14:36:02

Updated: 2019-11-29T18:40:57

Reserved: 2019-10-09T00:00:00


Link: CVE-2019-17421

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-21T15:15:14.790

Modified: 2021-04-29T18:17:21.697


Link: CVE-2019-17421

JSON object: View

cve-icon Redhat Information

No data.

CWE