vulnerability

Zoho ManageEngine ADAudit Plus: CVE-2024-21791: Authenticated SQL Injection Vulnerability

Severity
6
CVSS
(AV:N/AC:L/Au:M/C:P/I:P/A:P)
Published
Jan 12, 2024
Added
Dec 18, 2024
Modified
Jul 2, 2025

Description

An authenticated admin only sql injection vulnerability in the lockout history option has been fixed and released in ManageEngine ADAudit Plus version 7271.

Solution

zoho-manageengine-adaudit-plus-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.