Zoho · Zoho Manageengine Opmanager · CVE-2024-6748
**Name of the Vulnerable Software and Affected Versions**
Zohocorp ManageEngine OpManager, OpManager Plus, OpManager MSP and RMM versions 128317 and below
**Description**
The issue concerns an authenticated SQL injection vulnerability in the URL monitoring feature.
**Recommendations**
For versions 128317 and below, consider restricting access to the URL monitoring feature until a fix is available. As a temporary workaround, limit the privileges of authenticated users to minimize the risk of exploitation.