CVE-2023-32783

The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. NOTE: the vendor states "We do not consider this as a security bug and it's an expected behaviour."
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.1.1:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

14 Mar 2024, 16:15

Type Values Removed Values Added
Summary (en) The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. (en) The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. NOTE: the vendor states "We do not consider this as a security bug and it's an expected behaviour."

15 Aug 2023, 18:04

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.peteslade.com/post/manageengine-adauditplus-cve-2023-32783 - (MISC) https://www.peteslade.com/post/manageengine-adauditplus-cve-2023-32783 - Exploit, Third Party Advisory
CWE CWE-863
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.1.1:*:*:*:*:*:*:*

07 Aug 2023, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-07 17:15

Updated : 2024-05-14 13:12


NVD link : CVE-2023-32783

Mitre link : CVE-2023-32783

CVE.ORG link : CVE-2023-32783


JSON object : View

Products Affected

zohocorp

  • manageengine_adaudit_plus

microsoft

  • windows
CWE
CWE-863

Incorrect Authorization