CVE-2024-48878

EUVD-2024-43125
Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection inĀ Archived Audit Report.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.3 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
ManageEngineCNA
8.3 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 48%
Affected Products (NVD)
VendorProductVersion
zohocorpmanageengine_admanager_plus
𝑥
< 7.2
zohocorpmanageengine_admanager_plus
7.2:7200
zohocorpmanageengine_admanager_plus
7.2:7201
zohocorpmanageengine_admanager_plus
7.2:7202
zohocorpmanageengine_admanager_plus
7.2:7203
zohocorpmanageengine_admanager_plus
7.2:7210
zohocorpmanageengine_admanager_plus
7.2:7211
zohocorpmanageengine_admanager_plus
7.2:7212
zohocorpmanageengine_admanager_plus
7.2:7220
zohocorpmanageengine_admanager_plus
7.2:7221
zohocorpmanageengine_admanager_plus
7.2:7222
zohocorpmanageengine_admanager_plus
7.2:7223
zohocorpmanageengine_admanager_plus
7.2:7224
zohocorpmanageengine_admanager_plus
7.2:7230
zohocorpmanageengine_admanager_plus
7.2:7231
zohocorpmanageengine_admanager_plus
7.2:7232
zohocorpmanageengine_admanager_plus
7.2:7240
zohocorpmanageengine_admanager_plus
7.2:7241
𝑥
= Vulnerable software versions