CVE-2023-49333: Zohocorp ManageEngine Adaudit Plus

High severity, CVSS 8.8. EPSS: 3% chance of exploitation in the next 30 days.

Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL injection in the dashboard graph feature.

Affected products

  • Zohocorp ManageEngine Adaudit Plus: before 7.2 (fixed in 7.2); version 7.2 only

Published 2024-05-20. Last modified 2026-06-17.