vulnerability
Zoho ManageEngine ADSelfService Plus: Authenticated Remote Code Execution (CVE-2024-0252)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
9 | (AV:N/AC:L/Au:S/C:C/I:C/A:C) | Jan 10, 2024 | Jan 15, 2024 | Dec 18, 2024 |
Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
Jan 10, 2024
Added
Jan 15, 2024
Modified
Dec 18, 2024
Description
An authenticated remote code execution in the load balancer component has been fixed and released in the ADSelfService Plus version 6402.
Solution
zoho-manageengine-adselfservice-plus-upgrade-latest

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.