First published: Fri Sep 10 2021(Updated: )
Zoho ManageEngine ADSelfService Plus 6111 and prior is vulnerable to SQL Injection while linking the databases.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp Manageengine Adselfservice Plus | <6.1 | |
Zohocorp Manageengine Adselfservice Plus | =6.1 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6100 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6101 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6102 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6103 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6104 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6105 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6106 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6107 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6108 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6109 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6110 | |
Zohocorp Manageengine Adselfservice Plus | =6.1-6111 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-37422.
The title of the vulnerability is 'Zoho ManageEngine ADSelfService Plus 6111 and prior is vulnerable to SQL Injection while linking the databases.'
The affected software is Zoho ManageEngine ADSelfService Plus version 6.1 and prior.
The severity of CVE-2021-37422 is critical with a CVSS score of 9.8.
To fix CVE-2021-37422, apply the hotfix released by Zoho ManageEngine ADSelfService Plus. More information can be found at the provided reference link.