Vulnerability Details | |
---|---|
Impact | High |
Reported on | 29 Jun 2018 |
Reported by | Internal, filed on Zoho Bug Bounty |
Fixed on | 29 Nov 2018 |
Affected Builds | Till Build 123147 |
Fixed in | Build 125120 |
Overview | Unauthenticated access to API key disclosure from a servlet call |
Recommended Fix | Upgrade to Firewall Analyzer Version 12.5.120 or above. |
Unauthenticated access to API key disclosure from a servlet call
We recommend that you upgrade to Firewall Analyzer version 12.5.120 and above to fix this issue.
Source and Acknowledgements
Find out more about ZVE-2020-1820 from the ZVE dictionary.
For clarification or corrections please contact our support team or email us at fwanalyzer-support@manageengine.com