ManageEngine Password Manager Pro & PAM360 - Remote Code Execution CVE-2022-35405

Severity
Vulnerability description
Not available
Risk description
Not available
Exploit capabilities

Sniper can gain unauthenticated Remote Code Execution on the target system and extract multiple artefacts as evidence.

Recommendation
Not available
Codename
Not available
Detectable with
Network Scanner
Scan engine
Sniper
Cisa Kev
Cybersecurity Infrastructure Security Agency (CISA) Yes
Exploitable with Sniper
Yes
CVE Published
Jun 21, 2022
Detection added at
Software Type
Single Sign-On (SSO)
Vendor
ManageEngine
Product
Password Manager Pro, PAM360

Detect & validate this vulnerability

Go beyond surface scans. Get real validation with proprietary tools designed to prove what’s exploitable in your environment.