PT-2024-13652 · Zoho · Zoho Manageengine Adaudit Plus

Nhien Pham

+1

·

Published

2024-02-01

·

Updated

2024-07-03

·

CVE-2023-48792

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Zoho ManageEngine ADAudit Plus versions through 7250
Description The issue is related to SQL Injection in the report export option.
Recommendations For Zoho ManageEngine ADAudit Plus versions through 7250, update to a version later than 7250 to resolve the SQL Injection issue in the report export option.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2023-48792

Affected Products

Zoho Manageengine Adaudit Plus