skip to content
Decrypt LOL

Get Cyber-Smart in Just 5 Minutes a Week

Decrypt delivers quick and insightful updates on cybersecurity. No spam, no data sharing—just the info you need to stay secure.

Read the latest edition

ManageEngine Releases Fix for SQL Injection Vulnerability

/ 1 min read

ADAudit Plus addresses critical SQL injection vulnerability. ManageEngine has released a fix for a high-severity SQL injection vulnerability (CVE-2024-49574) affecting all ADAudit Plus builds below version 8123. This flaw could allow authenticated attackers to execute custom queries and access sensitive database entries. Users are advised to upgrade to the latest build, 8123, which was released on November 8, 2024, to mitigate this risk. The issue was reported internally, and further details can be obtained by contacting support.