CVE-2018-19118: Buffer Overflow
Zoho ManageEngine ADAudit before 5.1 build 5120 allows remote attackers to cause a denial of service (stack-based buffer overflow) via the 'Domain Name' field when adding a new domain.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability CVE-2018-19118?
CVE-2018-19118 is a high severity vulnerability in Zoho ManageEngine ADAudit before version 5.1 build 5120 that allows remote attackers to cause a denial of service through a stack-based buffer overflow.
What software is affected by CVE-2018-19118?
Zoho ManageEngine ADAudit Plus versions up to and excluding 5.1 are affected by CVE-2018-19118.
How can remote attackers exploit CVE-2018-19118?
Remote attackers can exploit CVE-2018-19118 by providing a malicious input in the 'Domain Name' field when adding a new domain, causing a denial of service via a stack-based buffer overflow.
What is the severity rating for CVE-2018-19118?
CVE-2018-19118 has a severity rating of 7.5 (high).
Is there a fix available for CVE-2018-19118?
Yes, the fix for CVE-2018-19118 is available in Zoho ManageEngine ADAudit version 5.1 build 5120 and above.