EIP-2026-118756

PRE-CVE

ManageEngine ADSelfService Plus 6.1 - User Enumeration

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118756. PoCs published by Metin Yunus Kandemir.

AI-analyzed exploit summary This exploit performs user enumeration in ManageEngine ADSelfService Plus by sending POST requests to the login endpoint and analyzing response messages to determine valid, disabled, or expired accounts. It reads usernames from a file and checks each one against the target system.

Description

ManageEngine ADSelfService Plus 6.1 - User Enumeration

Exploits (1)

exploitdb WORKING POC
by Metin Yunus Kandemir · pythonremotewindows
https://www.exploit-db.com/exploits/50873

This exploit performs user enumeration in ManageEngine ADSelfService Plus by sending POST requests to the login endpoint and analyzing response messages to determine valid, disabled, or expired accounts. It reads usernames from a file and checks each one against the target system.

Classification
Working Poc 95%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: ManageEngine ADSelfService Plus 6.1 Build 6121
No auth needed
Prerequisites: Target URL · List of usernames to test
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026