CVE-2021-44676: Critical severity manageengine access manager plus vulnerability
Zoho ManageEngine Access Manager Plus before 4203 allows anyone to view a few data elements (e.g., access control details) and modify a few aspects of the application state.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-44676?
CVE-2021-44676 is a vulnerability in Zoho ManageEngine Access Manager Plus that allows anyone to view certain data elements and modify aspects of the application state.
How severe is CVE-2021-44676?
CVE-2021-44676 has a severity rating of 9.8 out of 10, indicating it is critical.
Which software versions are affected by CVE-2021-44676?
CVE-2021-44676 affects Zoho ManageEngine Access Manager Plus versions 4.1-build4100, 4.1-build4101, 4.2-build4200, 4.2-build4201, and 4.2-build4202.
How can I fix CVE-2021-44676?
To fix CVE-2021-44676, it is recommended to upgrade Zoho ManageEngine Access Manager Plus to version 4.2-build4203 or later.
Where can I find more information about CVE-2021-44676?
You can find more information about CVE-2021-44676 on the Zoho ManageEngine website and the security advisory page provided.