Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-67512
HistoryAug 31, 2021 - 12:00 a.m.

ZOHO ManageEngine Log360 Cross-Site Scripting Vulnerability

2021-08-3100:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
zoho manageengine log360
cross-site scripting
vulnerability
log management
active directory
auditing
alerting
failure to validate
user data
client-side code
attack

EPSS

0.001

Percentile

49.6%

ZOHO ManageEngine Log360 is an integrated log management and Active Directory auditing and alerting solution from ZOHO USA. A cross-site scripting vulnerability exists in ZOHO ManageEngine Log360, which stems from the product’s failure to validate user data. An attacker could execute client-side code through this vulnerability.

EPSS

0.001

Percentile

49.6%

Related for CNVD-2021-67512