EPSS
Percentile
79.6%
In Zoho ManageEngine Application Manager prior to 14.6 Build 14660, the ‘haid’ parameter of the ‘/auditLogAction.do’ module is vulnerable to a Time-based Blind SQL Injection attack.
application.com
manageengine.com
www.securityfocus.com/bid/108470
www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2017-11738.html
www.trustwave.com/en-us/resources/security-resources/security-advisories/?fid=18734