Zohocorp ManageEngine ADAudit Plus Versions Below 8121 Vulnerable to Authenticated SQL Injection
CVE-2024-5467
What is CVE-2024-5467?
ManageEngine ADAudit Plus versions prior to 8121 expose users to an authenticated SQL injection vulnerability within the account lockout report functionality. This security flaw allows an attacker with valid credentials to execute arbitrary SQL queries through the application, potentially leading to unauthorized access to sensitive information, modification of data, or even complete compromise of affected systems. Organizations using non-updated versions of ADAudit Plus may face significant security risks, making it vital to apply the necessary updates and maintain the integrity of their security posture.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ADAudit Plus 0 < 8121
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved