Stored XSS Vulnerability in Zoho ManageEngine AssetExplorer 6.2.0 via /AssetDef.do ciName or assetName Parameter

Stored XSS Vulnerability in Zoho ManageEngine AssetExplorer 6.2.0 via /AssetDef.do ciName or assetName Parameter

CVE-2018-17596 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

In Zoho ManageEngine AssetExplorer, a Stored XSS vulnerability was discovered in the 6.2.0 version via the /AssetDef.do ciName or assetName parameter.

Learn more about our Web Application Penetration Testing UK.