High severity7.2NVD Advisory· Published May 24, 2022· Updated Jun 17, 2026
CVE-2022-23050
CVE-2022-23050
Description
ManageEngine AppManager15 (Build No:15510) allows an authenticated admin user to upload a DLL file to perform a DLL hijack attack inside the 'working' folder through the 'Upload Files / Binaries' functionality.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:zohocorp:manageengine_applications_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:zohocorp:manageengine_applications_manager:*:*:*:*:*:*:*:*range: >=15.0,<15.5
- cpe:2.3:a:zohocorp:manageengine_applications_manager:15.5:-:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_applications_manager:15.5:build15500:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_applications_manager:15.5:build15510:*:*:*:*:*:*
- ManageEngine/AppManager15description
- Range: 15510
Patches
Vulnerability mechanics
References
2- fluidattacks.com/advisories/cerati/nvdExploitThird Party Advisory
- www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2022-23050.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.