CVE-2023-48793: Zohocorp ManageEngine Adaudit Plus

Critical severity, CVSS 9.8. EPSS: 7% chance of exploitation in the next 30 days.

Zoho ManageEngine ADAudit Plus through 7250 allows SQL Injection in the aggregate report feature.

Affected products

  • Zohocorp ManageEngine Adaudit Plus: before 7.2 (fixed in 7.2); version 7.2 only

Published 2024-02-02. Last modified 2026-06-17.