mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-04 18:08:00 +02:00
801 B
801 B
CVE-2021-27956
Description
Zoho ManageEngine ADSelfService Plus before 6104 allows stored XSS on the /webclient/index.html#/directory-search user search page via the e-mail address field.
POC
Reference
- https://raxis.com/blog/cve-2021-27956-manage-engine-xss
- https://raxis.com/blog/cve-2021-27956-manage-engine-xss
- https://www.manageengine.com
- https://www.manageengine.com