add CVE-2020-28653

This commit is contained in:
gobysec 2021-08-05 18:48:25 +08:00
parent 3315e89123
commit 53886cb2cc
2 changed files with 9 additions and 0 deletions

Binary file not shown.

After

Width:  |  Height:  |  Size: 669 KiB

View File

@ -0,0 +1,9 @@
# ManageEngine OpManager RCE (CVE-2020-28653)
Zoho ManageEngine OpManager Stable build before 125203 (and Released build before 125233) allows Remote Code Execution via the Smart Update Manager (SUM) servlet.
**FOFA query rule**: [title="ManageEngine OpManager"](https://fofa.so/result?qbase64=dGl0bGU9Ik1hbmFnZUVuZ2luZSBPcE1hbmFnZXIi)
# Demo
![](ManageEngine_OpManager_RCE_CVE_2020_28653.gif)