| Vulnerability Details | |
|---|---|
| Impact | High |
| Reported on | 29 Jun 2018 |
| Reported by | Internal, filed on Zoho Bug Bounty |
| Fixed on | 29 Nov 2018 |
| Affected Builds | Till Build 123147 |
| Fixed in | Build 125120 |
| Overview | Unauthenticated access to API key disclosure from a servlet call |
| Recommended Fix | Upgrade to Firewall Analyzer Version 12.5.120 or above. |
Unauthenticated access to API key disclosure from a servlet call
We recommend that you upgrade to Firewall Analyzer version 12.5.120 and above to fix this issue.
Source and Acknowledgements
Find out more about ZVE-2020-1820 from the ZVE dictionary.
For clarification or corrections please contact our support team or email us at fwanalyzer-support@manageengine.com