Security Advisory
CVE-2017-11738
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
In Zoho ManageEngine Application Manager prior to 14.6 Build 14660, the 'haid' parameter of the '/auditLogAction.do' module is vulnerable to a Time-based Blind SQL Injection attack.