CVE-2018-10466: SQL Injection
Published May 29, 2018
·Updated
Zoho ManageEngine ADAudit Plus before 5.0.0 build 5100 allows blind SQL Injection.
Affected Software
1 affected component
ZohoCorp ManageEngine ADAudit Plus<5.0.0
Event History
May 29, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-10466?
The severity of CVE-2018-10466 is critical.
2
What does CVE-2018-10466 allow?
CVE-2018-10466 allows blind SQL Injection.
3
Which software is affected by CVE-2018-10466?
Zoho ManageEngine ADAudit Plus versions before 5.0.0 build 5100 are affected.
4
How can I fix CVE-2018-10466?
Upgrade to Zoho ManageEngine ADAudit Plus 5.0.0 build 5100 or later.
5
Where can I find more information about CVE-2018-10466?
You can find more information about CVE-2018-10466 at the following links: [https://vulmon.com/vulnerabilitydetails?qid=CVE-2018-10466](https://vulmon.com/vulnerabilitydetails?qid=CVE-2018-10466) and [https://www.manageengine.com/products/active-directory-audit/adaudit-plus-release-notes.html](https://www.manageengine.com/products/active-directory-audit/adaudit-plus-release-notes.html)