Source |
The Hacker News |
Identifiant |
3356853 |
Date de publication |
2021-09-08 22:45:14 (vue: 2021-09-09 06:05:58) |
Titre |
CISA Warns of Actively Exploited Zoho ManageEngine ADSelfService Vulnerability |
Texte |
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday issued a bulletin warning of a zero-day flaw affecting Zoho ManageEngine ADSelfService Plus deployments that is currently being actively exploited in the wild.
The flaw, tracked as CVE-2021-40539, concerns a REST API authentication bypass that could lead to arbitrary remote code execution (RCE). ADSelfService Plus |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 40539 actively adselfservice affecting agency api arbitrary as cve authentication being bulletin bypass cisa code concerns could currently cybersecurity day deployments execution exploited flaw infrastructure issued lead manageengine plus rce remote rest security tracked vulnerability warning warns wednesday wild zero zoho |
Tags |
Vulnerability
Guideline
|
Stories |
|
Move |
|