vulnerability
Zoho ManageEngine ADAudit Plus: CVE-2024-21791: Authenticated SQL Injection Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:L/Au:M/C:P/I:P/A:P) | Jan 12, 2024 | Dec 18, 2024 | Jul 2, 2025 |
Severity
6
CVSS
(AV:N/AC:L/Au:M/C:P/I:P/A:P)
Published
Jan 12, 2024
Added
Dec 18, 2024
Modified
Jul 2, 2025
Description
An authenticated admin only sql injection vulnerability in the lockout history option has been fixed and released in ManageEngine ADAudit Plus version 7271.
Solution
zoho-manageengine-adaudit-plus-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.