CVE-2022-28987

Zoho ManageEngine ADSelfService Plus before 6202 allows attackers to perform username enumeration via a crafted POST request to /ServletAPI/accounts/login.
Configurations

Configuration 1

cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.1:6121:*:*:*:*:*:*

Information

Published : 2022-05-20 03:15

Updated : 2022-07-02 12:15


NVD link : CVE-2022-28987

Mitre link : CVE-2022-28987