CVE-2023-32783

The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. NOTE: the vendor states "We do not consider this as a security bug and it's an expected behaviour."
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.1.1:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

14 Mar 2024, 16:15

Type Values Removed Values Added
Summary (en) The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. (en) The event analysis component in Zoho ManageEngine ADAudit Plus 7.1.1 allows an attacker to bypass audit detection by creating or renaming user accounts with a "$" symbol suffix. NOTE: the vendor states "We do not consider this as a security bug and it's an expected behaviour."

15 Aug 2023, 18:04

Type Values Removed Values Added
First Time Microsoft windows
Microsoft
Zohocorp
Zohocorp manageengine Adaudit Plus
CPE cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.1.1:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References (MISC) https://www.peteslade.com/post/manageengine-adauditplus-cve-2023-32783 - (MISC) https://www.peteslade.com/post/manageengine-adauditplus-cve-2023-32783 - Exploit, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-863

07 Aug 2023, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-07 17:15

Updated : 2024-04-11 01:20


NVD link : CVE-2023-32783

Mitre link : CVE-2023-32783

CVE.ORG link : CVE-2023-32783


JSON object : View

Products Affected

microsoft

  • windows

zohocorp

  • manageengine_adaudit_plus
CWE
CWE-863

Incorrect Authorization