PT-2019-16760 · Zoho Manageengine · Adselfservice Plus

Dominique Righetto

·

Published

2019-01-03

·

Updated

2025-05-30

·

CVE-2019-3905

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zoho ManageEngine ADSelfService Plus versions 5.x before build 5703
Description The issue is related to a Server-Side Request Forgery (SSRF) in Zoho ManageEngine ADSelfService Plus.
Recommendations For versions 5.x before build 5703, update to build 5703 or later to resolve the issue.

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2019-3905

Affected Products

Adselfservice Plus