Cross-site scripting (XSS) vulnerability in Zoho ManageEngine AssetExplorer 6.1 service pack 6112 allows remote attackers to inject arbitrary web script or HTML via a Publisher registry entry, which is not properly handled when the machine is scanned.
| Software | From | Fixed in |
|---|---|---|
| zohocorp / manageengine_assetexplorer | 6.1 | 6.1.x |