Security Advisory

CVE-2017-11738

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-05-23 15:29:28
Last updated 2024-08-05 18:19:38
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Zoho ManageEngine Application Manager prior to 14.6 Build 14660, the 'haid' parameter of the '/auditLogAction.do' module is vulnerable to a Time-based Blind SQL Injection attack.