ManageEngine (Password Manager Pro, PAM360) Family August 2024 Security Update Advisory
Overview
Zoho(https://www.zohocorp.com/) has released a security update that addresses a vulnerability in its ManageEngine suite of products. Users of affected products are advised to update to the latest version.
Affected Products
Password Manager Pro versions up to 12430
PAM360 versions up to 7000
Resolved Vulnerabilities
High Impact SQL Injection Vulnerability (CVE-2024-5546) in Password Manager Pro [1]
High Impact SQL Injection Vulnerability (CVE-2024-5546) in PAM360 [1]
Vulnerability Patches
Please follow the security advisory published on August 28, 2018 to update to the appropriate version and the latest version.
Password Manager Pro version 12431
PAM360 version 7001
Referenced Sites
[1] CVE-2024-5546 – Authenticated SQL Injection
https://www.manageengine.com/products/passwordmanagerpro/advisory/cve-2024-5546.html