Authenticated SQL Injection in Zohocorp ManageEngine ADAudit Plus
CVE-2024-5490
What is CVE-2024-5490?
Zohocorp's ManageEngine ADAudit Plus, specifically versions prior to 8000, presents a significant security vulnerability due to an authenticated SQL injection flaw in its aggregate reports feature. This vulnerability could permit attackers with authenticated access to execute arbitrary SQL commands, potentially compromising sensitive data within the system. Organizations utilizing these versions should prioritize applying the necessary patches and updates to mitigate the risk of unauthorized data access and maintain the integrity of their data security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ADAudit Plus 0 < 8000
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved