PT-2021-22830 · Zoho · Zoho Manageengine Log360

Published

2021-08-29

·

Updated

2021-09-01

·

CVE-2021-40172

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zoho ManageEngine Log360 versions prior to Build 5219
Description The issue allows a CSRF attack on proxy settings.
Recommendations For versions prior to Build 5219, update to Build 5219 or later to resolve the issue.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-40172

Affected Products

Zoho Manageengine Log360