First published: Fri Aug 23 2024(Updated: )
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in reports module.
Credit: 0fc0942c-577d-436f-ae8e-945763c79b02
Affected Software | Affected Version | How to fix |
---|---|---|
Zoho ManageEngine ADAudit Plus | <8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5556 has a high severity rating due to its potential impact on authenticated SQL injection vulnerabilities.
To fix CVE-2024-5556, upgrade your Zoho ManageEngine ADAudit Plus to version 8000 or later.
CVE-2024-5556 can allow attackers to execute arbitrary SQL commands, leading to unauthorized data access or modification.
CVE-2024-5556 affects all versions of Zoho ManageEngine ADAudit Plus below 8000.
CVE-2024-5556 is an authenticated SQL injection vulnerability, requiring user authentication for exploitation.