Sploitus Critical RCE Vulnerability in ManageEngine Applications Manager Exploited
Article Content
- •CVE-2020-14008 allows remote code execution in ManageEngine Applications Manager.
- •New exploit improves reliability over previous methods, bypassing upload failures.
- •Default admin credentials increase vulnerability risk for many deployments.
A new exploit for CVE-2020-14008 has been released, targeting ManageEngine Applications Manager versions up to 14720. This vulnerability allows remote code execution via an authenticated command-execution primitive, enabling attackers to run arbitrary commands as the system account. The exploit bypasses the original proof-of-concept's fragile upload chain, improving reliability in real-world scenarios. It leverages PowerShell to fetch a payload from an attacker-controlled HTTP server. The exploit is parameterized for flexibility in targeting and callback configurations. Default credentials are often left unchanged, increasing the risk of exploitation. The exploit is available publicly, and security professionals are urged to assess their systems for vulnerability. Current status indicates that exploitation is possible, but no active exploitation in the wild has been confirmed yet.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2020-14008 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Exploitation Confirmed Citrix has confirmed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, in its NetScaler ADC and Gateway products, both scoring 9.5 on the CVSS scale. These vulnerabilities are actively exploited in the wild, allowing unauthenticated attackers to execute arbitrary commands and potentially cause…