CVE-2014-8678: ManageEngine Oputils
High severity, CVSS 7.8. EPSS: 2.3% chance of exploitation in the next 30 days.
The ConfigSaveServlet servlet in ManageEngine OpUtils before build 71024 allows remote attackers to "disclose" files via a crafted filename, related to "saveFile."
Affected products
- ManageEngine Oputils: up to and including 7.0
Published 2014-11-25. Last modified 2026-06-17.