ManageEngine (ADSelfService Plus) Product January 2024 Security Update Advisory
Overview
Zoho(https://www.zohocorp.com/) has released a security update that fixes vulnerabilities in its ManageEngine suite of products. Users of affected products are advised to update to the latest version.
Affected Products
ADSelfService Plus build 6401 and later versions
Resolved Vulnerabilities
High impact remote code execution vulnerability (CVE-2024-0252) in ADSelfService Plus [1]
Vulnerability Patches
Please follow the security advisory published on January 11, 2019 to update to the applicable version and the latest version.
ADSelfService Plus build 6402 version
Referenced Sites
[1] CVE-2024-0252 – Authenticated Remote Code Execution
https://www.manageengine.com/products/self-service-password/advisory/CVE-2024-0252.html