Total vulnerabilities in the database
Zoho ManageEngine ADSelfService Plus before 6202 allows attackers to perform username enumeration via a crafted POST request to /ServletAPI/accounts/login.
Software | From | Fixed in |
---|---|---|
zohocorp / manageengine_adselfservice_plus | 6.1-6121 | 6.1-6121.x |