CVE-2018-15740: XSS
Published Aug 28, 2018
·Updated
Zoho ManageEngine ADManager Plus 6.5.7 has XSS on the "Workflow Delegation" "Requester Roles" screen.
Affected Software
1 affected component
ZohoCorp ManageEngine ADManager Plus=6.5.7
Event History
Aug 28, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-15740.
2
What is the severity of CVE-2018-15740?
The severity of CVE-2018-15740 is medium (6.1).
3
What software is affected by CVE-2018-15740?
Zoho ManageEngine ADManager Plus version 6.5.7 is affected by CVE-2018-15740.
4
What is the description of CVE-2018-15740?
CVE-2018-15740 is a Cross-Site Scripting (XSS) vulnerability found on the "Workflow Delegation" "Requester Roles" screen of Zoho ManageEngine ADManager Plus version 6.5.7.
5
How can I fix CVE-2018-15740?
To fix CVE-2018-15740, you should update to a patched version of Zoho ManageEngine ADManager Plus.