ZeroHour

CVE-2022-24681

PoC
CVSS 3.1
6.1 medium
EPSS
4%p89
Published
()
Modified
Description

Zoho ManageEngine ADSelfService Plus before 6121 allows XSS via the welcome name attribute to the Reset Password, Unlock Account, or User Must Change Password screen.

Vendors
zohocorp
Products
manageengine adselfservice plus
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.