Zoho ManageEngine ADSelfService Plus version 6113 and prior is vulnerable to REST API authentication bypass with resultant remote code execution.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 22 Oct 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 21 Oct 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 03 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-21T23:25:35.374Z
Reserved: 2021-09-06T00:00:00.000Z
Link: CVE-2021-40539
Updated: 2024-08-04T02:44:10.872Z
Status : Modified
Published: 2021-09-07T17:15:07.367
Modified: 2025-10-22T00:17:45.423
Link: CVE-2021-40539
No data.
OpenCVE Enrichment
No data.