Loading
SQL injection vulnerability in the com.manageengine.opmanager.servlet.UpdateProbeUpgradeStatus servlet in ZOHO ManageEngine OpManager 11.3 and 11.4, IT360 10.3 and 10.4, and Social IT Plus 11.0 allows remote attackers or remote authenticated users to execute arbitrary SQL commands via the probeName parameter.
Use CWE-89, Zohocorp vendor hub and Manageengine Opmanager product page to widen CVE-2014-7867 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-29535, CVE-2021-44514 and CVE-2023-47211 for nearby disclosures in the same product family.