First published: Thu Dec 13 2018(Updated: )
Zoho ManageEngine ADAudit before 5.1 build 5120 allows remote attackers to cause a denial of service (stack-based buffer overflow) via the 'Domain Name' field when adding a new domain.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp ManageEngine ADAudit Plus | <5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19118 is a high severity vulnerability in Zoho ManageEngine ADAudit before version 5.1 build 5120 that allows remote attackers to cause a denial of service through a stack-based buffer overflow.
Zoho ManageEngine ADAudit Plus versions up to and excluding 5.1 are affected by CVE-2018-19118.
Remote attackers can exploit CVE-2018-19118 by providing a malicious input in the 'Domain Name' field when adding a new domain, causing a denial of service via a stack-based buffer overflow.
CVE-2018-19118 has a severity rating of 7.5 (high).
Yes, the fix for CVE-2018-19118 is available in Zoho ManageEngine ADAudit version 5.1 build 5120 and above.