First published: Mon Nov 04 2024(Updated: )
Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report.
Credit: 0fc0942c-577d-436f-ae8e-945763c79b02
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp ManageEngine ADManager Plus | <7.2 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7200 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7201 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7202 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7203 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7210 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7211 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7212 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7220 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7221 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7222 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7223 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7224 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7230 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7231 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7232 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7240 | |
Zohocorp ManageEngine ADManager Plus | =7.2-7241 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48878 is classified as a high severity vulnerability due to its potential for exploitation via SQL Injection.
To fix CVE-2024-48878, upgrade Zohocorp ManageEngine ADManager Plus to version 7.2-7242 or later.
CVE-2024-48878 affects all versions of Zohocorp ManageEngine ADManager Plus up to and including 7.2-7241.
CVE-2024-48878 is an SQL Injection vulnerability found in the Archived Audit Report module.
It is recommended to apply the latest version update as the primary resolution for CVE-2024-48878, as no official workaround is provided.