Check Point Reference: | CPAI-2022-1650 |
Date Published: | 20 Jun 2023 |
Severity: | High |
Last Updated: | Tuesday 20 June, 2023 |
Source: | |
Industry Reference: | CVE-2022-38772 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125450 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125451 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125452 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125453 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125455 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125456 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125459 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125464 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125467 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125469 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125471 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125476 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125482 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125483 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125484 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125485 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125488 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125490 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125557 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125566 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125568 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125582 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125584 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125585 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125606 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125615 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125647 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125656 Zoho Corporation ManageEngine NetFlow Analyzer 12.5 Build125657 ZohoCorp ManageEngine NetFlow Analyzer 12.5 Build125664 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126000 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126001 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126100 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126101 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126102 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126113 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126114 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126115 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126116 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126117 ZohoCorp ManageEngine NetFlow Analyzer 12.6 Build126118 Zoho Corporation ManageEngine NetFlow Analyzer 12.6 Build126119 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125450 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125451 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125452 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125453 Zoho Corp ManageEngine Network Configuration Manager 12.5 Build 125455 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125456 Zoho Corporation Manageengine Network Configuration Manager 12.5 Build125459 Zoho Corp ManageEngine Network Configuration Manager 12.5 Build 125465 |
Vulnerability Description | A remote code execution vulnerability exists in ZohoCorp ManageEngine. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the affected system. |
This protection detects attempts to exploit this vulnerability.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.
This protection's log will contain the following information:
Attack Name: Web Server Enforcement Violation.
Attack Information: ZohoCorp ManageEngine Remote Code Execution (CVE-2022-38772)