Security Advisory

CVE-2021-40493

9.8
CRITICAL

Vulnerability Description

Zoho ManageEngine OpManager before 125437 is vulnerable to SQL Injection in the support diagnostics module. This occurs via the pollingObject parameter of the getDataCollectionFailureReason API.
Published Date October 13, 2021
Official Source NIST NVD Advisory