A SQL Injection vulnerability exists in the Zoho ManageEngine Applications Manager 13 before build 13820 via the resids parameter in a /editDisplaynames.do?method=editDisplaynames GET request.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-08-08T00:00:00

Updated: 2018-08-28T20:57:01

Reserved: 2018-08-07T00:00:00


Link: CVE-2018-15168

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-08-08T00:29:01.397

Modified: 2018-10-05T15:33:33.483


Link: CVE-2018-15168

JSON object: View

cve-icon Redhat Information

No data.

CWE