First published: Mon Aug 12 2024(Updated: )
Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in file auditing configuration.
Credit: 0fc0942c-577d-436f-ae8e-945763c79b02
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho ManageEngine ADAudit Plus | <8.1 | |
Zoho ManageEngine ADAudit Plus | =8.1 | |
Zoho ManageEngine ADAudit Plus | =8.1-8100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5527 holds a critical severity rating due to the potential for authenticated SQL Injection.
To fix CVE-2024-5527, upgrade Zoho ManageEngine ADAudit Plus to version 8110 or above.
CVE-2024-5527 affects all versions of Zoho ManageEngine ADAudit Plus below 8110.
CVE-2024-5527 is an authenticated SQL Injection vulnerability.
At this time, there are no specific public exploits reported for CVE-2024-5527, but it is advisable to secure your systems.