Security Advisory

CVE-2017-11738

8.1
HIGH

Vulnerability Description

In Zoho ManageEngine Application Manager prior to 14.6 Build 14660, the 'haid' parameter of the '/auditLogAction.do' module is vulnerable to a Time-based Blind SQL Injection attack.
Published Date May 23, 2019
Official Source NIST NVD Advisory