4.3
CVSSv2

CVE-2018-15740

Published: 28/08/2018 Updated: 15/07/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Zoho ManageEngine ADManager Plus 6.5.7 has XSS on the "Workflow Delegation" "Requester Roles" screen.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zohocorp manageengine admanager plus 6.5.7

Exploits

# Exploit Title: ManageEngine ADManager Plus 657 - Cross-Site Scripting # Date: 2018-08-21 # Exploit Author: Ismail Tasdelen # Vendor Homepage: wwwmanageenginecom/ # Hardware Link : wwwmanageenginecom/products/ad-manager/ # Software : ZOHO Corp ManageEngine ADManager Plus # Product Version: 657 # Vulernability Type : Cross ...
ManageEngine ADManager Plus version 657 suffers from a cross site scripting vulnerability ...