CVE-2023-28341
11.04.2023, 01:15
Stored Cross site scripting (XSS) vulnerability in Zoho ManageEngine Applications Manager through 16340 allows an unauthenticated user to inject malicious javascript on the incorrect login details page.
Vendor | Product | Version |
---|---|---|
zohocorp | manageengine_applications_manager | 16.0 ≤ 𝑥 < 16.3 |
zohocorp | manageengine_applications_manager | 15.9:build15990 |
zohocorp | manageengine_applications_manager | 16.3:build16300 |
zohocorp | manageengine_applications_manager | 16.3:build16310 |
zohocorp | manageengine_applications_manager | 16.3:build16320 |
zohocorp | manageengine_applications_manager | 16.3:build16330 |
zohocorp | manageengine_applications_manager | 16.3:build16340 |
𝑥
= Vulnerable software versions