ZeroHour

CVE-2023-28341

CVSS 3.1
6.1 medium
EPSS
99%p100
Published
()
Modified
Description

Stored Cross site scripting (XSS) vulnerability in Zoho ManageEngine Applications Manager through 16340 allows an unauthenticated user to inject malicious javascript on the incorrect login details page.

Vendors
zohocorp
Products
manageengine applications manager
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.