Total vulnerabilities in the database
In Zoho ManageEngine Application Manager prior to 14.6 Build 14660, the 'haid' parameter of the '/auditLogAction.do' module is vulnerable to a Time-based Blind SQL Injection attack.
Software | From | Fixed in |
---|---|---|
zohocorp / manageengine_applications_manager | 13.1-13100 | 13.1-13100.x |