A vulnerability, which was classified as problematic, was found in Zoho ManageEngine Log360 up to 5223. This affects some unknown functionality of the component Logon Security Settings. Upgrading to version 5224 eliminates this vulnerability. The upgrade is hosted for download at manageengine.com.
Zoho ManageEngine Log360 up to 5223 Logon Security Settings cross-site request forgery
- Virtual Patching
- August 30, 2021
- 9:04 pm
CVE-2022-1840 : Home Clean Services Management System Stored Cross-Site Scripting (XSS)
Description Persistent XSS (or Stored XSS) attack is one of the three major categories of XSS attacks, the others being
CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2
Description Several Cross-Site Scripting vulnerabilities in the Curtain WordPress plugin. Due to these Cross-Site Scripting vulnerabilities, an attacker would be
CVE-2022-AVAST2 : Self-Defense Bypass via Repairing Function
Description It was noted that there is security checking to prevent some of the Avast processes from loading of undesired/unsigned