CVE-2018-15608
MEDIUMManageEngine ADManager Plus 6.5.7 - HTML Injection in AD Delegation Help Desk Technicians Screen
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-15608. PoCs published by Ismail Tasdelen.
AI-analyzed exploit summary This exploit demonstrates an HTML injection vulnerability in ManageEngine ADManager Plus 6.5.7. The vulnerability allows an attacker to inject arbitrary HTML code into the 'AD Delegation' 'Help Desk Technicians' screen via the 'searchText' parameter.
Description
Zoho ManageEngine ADManager Plus 6.5.7 allows HTML Injection on the "AD Delegation" "Help Desk Technicians" screen.
Exploits (1)
This exploit demonstrates an HTML injection vulnerability in ManageEngine ADManager Plus 6.5.7. The vulnerability allows an attacker to inject arbitrary HTML code into the 'AD Delegation' 'Help Desk Technicians' screen via the 'searchText' parameter.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N