Manageengine Admanager Plus vulnerabilities
4 known vulnerabilities affecting manageengine/admanager_plus.
Total CVEs
4
CISA KEV
0
Public exploits
3
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2024-24409HIGHCVSS 8.8PoC≤ 72032024-11-08
CVE-2024-24409 [HIGH] CWE-269 CVE-2024-24409: Zohocorp ManageEngine ADManager Plus versions 7203 and prior are vulnerable to Privilege Escalation
Zohocorp ManageEngine ADManager Plus versions 7203 and prior are vulnerable to Privilege Escalation in the Modify Computers option.
cvelistv5nvd
CVE-2024-48878HIGHCVSS 8.8≤ 72412024-11-04
CVE-2024-48878 [HIGH] CWE-89 CVE-2024-48878: Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Arch
Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report.
cvelistv5nvd
CVE-2018-15608MEDIUMCVSS 6.1PoCv6.5.72018-08-28
CVE-2018-15608 [MEDIUM] CWE-79 CVE-2018-15608: Zoho ManageEngine ADManager Plus 6.5.7 allows HTML Injection on the "AD Delegation" "Help Desk Techn
Zoho ManageEngine ADManager Plus 6.5.7 allows HTML Injection on the "AD Delegation" "Help Desk Technicians" screen.
nvd
CVE-2012-1049MEDIUMCVSS 4.3PoCv5.22012-02-13
CVE-2012-1049 [MEDIUM] CWE-79 CVE-2012-1049: Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine ADManager Plus 5.2 Build 5210 al
Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine ADManager Plus 5.2 Build 5210 allow remote attackers to inject arbitrary web script or HTML via the (1) domainName parameter to jsp/AddDC.jsp or (2) operation parameter to DomainConfig.do.
nvd