High severity7.8NVD Advisory· Published Nov 21, 2019· Updated Jun 17, 2026
CVE-2019-17421
CVE-2019-17421
Description
Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall Analyzer 12.4.072 allow local users to elevate privileges to root by overwriting this file with a malicious payload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:zohocorp:manageengine_firewall_analyzer:12.4:124072:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_opmanager:12.4:build124072:*:*:*:*:*:*
- Zoho/ManageEngine OpManagerdescription
- Range: 12.4.072
- Range: 12.4.072
Patches
Vulnerability mechanics
References
3- www.manageengine.com/products/firewall/security-updates/cve-2019-17421.htmlnvdPatchVendor Advisory
- twitter.com/va_startnvdExploitThird Party Advisory
- blog.vastart.dev/2019/11/cve-2019-17421-privilege-escalation.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.