Show filters
506 Total Results
Displaying 21-30 of 506
Sort by:
Attacker Value
Unknown
CVE-2024-48878
Disclosure Date: November 04, 2024 (last updated November 06, 2024)
Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report.
0
Attacker Value
Unknown
CVE-2024-5608
Disclosure Date: October 24, 2024 (last updated January 05, 2025)
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature.
0
Attacker Value
Unknown
CVE-2024-49297
Disclosure Date: October 17, 2024 (last updated October 18, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zoho CRM Zoho CRM Lead Magnet allows SQL Injection.This issue affects Zoho CRM Lead Magnet: from n/a through 1.7.9.0.
0
Attacker Value
Unknown
CVE-2024-47334
Disclosure Date: October 09, 2024 (last updated October 09, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zoho Flow Zoho Flow for WordPress allows SQL Injection.This issue affects Zoho Flow for WordPress: from n/a through 2.7.1.
0
Attacker Value
Unknown
CVE-2024-47633
Disclosure Date: October 05, 2024 (last updated October 06, 2024)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Zoho Forms allows Stored XSS.This issue affects Zoho Forms: from n/a through 4.0.
0
Attacker Value
Unknown
CVE-2024-38868
Disclosure Date: August 30, 2024 (last updated September 05, 2024)
Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability while isolating the devices.This issue affects Endpoint Central: before 11.3.2406.08 and before 11.3.2400.15
0
Attacker Value
Unknown
CVE-2024-6204
Disclosure Date: August 30, 2024 (last updated September 20, 2024)
Zohocorp ManageEngine Exchange Reporter Plus versions before 5715 are vulnerable to SQL Injection in the reports module.
0
Attacker Value
Unknown
CVE-2024-5546
Disclosure Date: August 28, 2024 (last updated September 20, 2024)
Zohocorp ManageEngine Password Manager Pro versions before 12431 and ManageEngine PAM360 versions before 7001 are affected by authenticated SQL Injection vulnerability via a global search option.
0
Attacker Value
Unknown
CVE-2024-41150
Disclosure Date: August 23, 2024 (last updated August 28, 2024)
An Stored Cross-site Scripting vulnerability in request module affects Zohocorp ManageEngine ServiceDesk Plus, ServiceDesk Plus MSP and SupportCenter Plus.This issue affects ServiceDesk Plus versions: through 14810; ServiceDesk Plus MSP: through 14800; SupportCenter Plus: through 14800.
0
Attacker Value
Unknown
CVE-2024-38869
Disclosure Date: August 23, 2024 (last updated August 30, 2024)
Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability in remote office deploy configurations.This issue affects Endpoint Central: before 11.3.2416.04 and before 11.3.2400.25.
0