First published: Tue Aug 28 2018(Updated: )
Zoho ManageEngine ADManager Plus 6.5.7 allows HTML Injection on the "AD Delegation" "Help Desk Technicians" screen.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ManageEngine ADManager Plus | =6.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15608 is a vulnerability in Zoho ManageEngine ADManager Plus 6.5.7 that allows HTML injection on the "AD Delegation" "Help Desk Technicians" screen.
Yes, Zoho ManageEngine ADManager Plus 6.5.7 is affected by CVE-2018-15608.
The severity of CVE-2018-15608 is medium with a CVSS score of 6.1.
To fix CVE-2018-15608, it is recommended to update Zoho ManageEngine ADManager Plus to a version that has the vulnerability patched.
You can find more information about CVE-2018-15608 at the following link: [CVE-2018-15608](https://www.exploit-db.com/exploits/45254/).