First published: Wed Nov 23 2011(Updated: )
Cross-site scripting (XSS) vulnerability in jsp/admin/tools/remote_share.jsp in ManageEngine ADManager Plus 4.4.0 allows remote attackers to inject arbitrary web script or HTML via the computerName parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho Corporation AdManager Plus | =4.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-5050 has a high severity rating due to its potential for remote code execution through cross-site scripting.
To fix CVE-2010-5050, update ManageEngine ADManager Plus to the latest version that addresses the XSS vulnerability.
CVE-2010-5050 affects users of ManageEngine ADManager Plus version 4.4.0.
CVE-2010-5050 can be exploited by injecting arbitrary web scripts or HTML via the computerName parameter in the application.
Exploiting CVE-2010-5050 can lead to unauthorized access and manipulation of user sessions, compromising the security of the application.