ManageEngine ADAudit Plus
cpe:2.3:a:zohocorp:manageengine_adaudit_plus:*:*:*:*:*:*:*
- < 8511
A SQL injection vulnerability has been identified in ManageEngine ADAudit Plus versions through 8510. This vulnerability allows authenticated users to inject malicious SQL queries into the Service Account Auditing reports, potentially leading to unauthorized access to database information.
Exploitation of this vulnerability could enable an authenticated user to execute arbitrary SQL queries, allowing access to sensitive database information.
Users can upgrade to ManageEngine ADAudit Plus build 8511 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.