Note: This vulnerability is different from another vulnerability (CVE-2024-36515), both of which have affected ADAudit Plus' dashboard.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-36139 | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerability (CVE-2024-36515), both of which have affected ADAudit Plus' dashboard. |
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 27 Aug 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zohocorp
Zohocorp manageengine Adaudit Plus |
|
| CPEs | cpe:2.3:a:zohocorp:manageengine_adaudit_plus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Zohocorp
Zohocorp manageengine Adaudit Plus |
Fri, 23 Aug 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Manageengine
Manageengine adaudit Plus |
|
| CPEs | cpe:2.3:a:manageengine:adaudit_plus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Manageengine
Manageengine adaudit Plus |
|
| Metrics |
ssvc
|
Fri, 23 Aug 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerability (CVE-2024-36515), both of which have affected ADAudit Plus' dashboard. | |
| Title | SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ManageEngine
Published:
Updated: 2024-08-23T15:20:14.680Z
Reserved: 2024-05-29T19:31:31.769Z
Link: CVE-2024-36516
Updated: 2024-08-23T15:20:01.305Z
Status : Analyzed
Published: 2024-08-23T14:15:10.523
Modified: 2024-08-27T13:28:52.227
Link: CVE-2024-36516
No data.
OpenCVE Enrichment
No data.
EUVD