CVE-2024-36485
CVE-2024-36485
8.3
HighPublished:
Last updated:
Source:0fc0942c-577d-436f-ae8e-945763c79b02
Modified
Weakness (CWE)
CVSS Vector
v3.1- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- Low
- User Interaction
- None
- Scope
- Unchanged
- Confidentiality
- High
- Integrity
- High
- Availability
- Low
Description
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in Technician reports option.
References
0fc0942c-577d-436f-ae8e-945763c79b02
https://www.manageengine.com/products/active-directory-audit/cve-2024-36485.html