CVE

CVE-2022-28987

CVE-2022-28987

ManageEngine ADSelfService Plus v6.1 allows attackers to perform username enumeration via a crafted POST request to /ServletAPI/accounts/login.

Source: CVE-2022-28987

Exit mobile version