CVE-2018-20485: Zohocorp ManageEngine Adselfservice Plus
Medium severity, CVSS 6.1. EPSS: 5.3% chance of exploitation in the next 30 days.
Zoho ManageEngine ADSelfService Plus 5.7 before build 5702 has XSS in the employee search feature.
Affected products
- Zohocorp ManageEngine Adselfservice Plus: version 4.5 only; version 5.0 only; version 5.1 only; version 5.2 only; version 5.3 only; version 5.4 only; …
Published 2018-12-26. Last modified 2026-06-17.