CVE-2023-41904
27.09.2023, 15:19
Zoho ManageEngine ADManager Plus before 7203 allows 2FA bypass (for AuthToken generation) in REST APIs.Enginsight
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_admanager_plus | 𝑥 < 7.2 |
| zohocorp | manageengine_admanager_plus | 7.2:7200 |
| zohocorp | manageengine_admanager_plus | 7.2:7201 |
| zohocorp | manageengine_admanager_plus | 7.2:7202 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration