Security
Response Center

Emergency hotline

Emergency assistance for ADManager Plus vulnerability (CVE-2021-42002)

Notice

This vulnerability has been fixed. Update to ADManager Plus build 7117 immediately.

About the vulnerability

An authentication bypass vulnerability (CVE-2021-42002), that affects the REST API URLs that could result in remote code execution (RCE), was identified in ADManager Plus, ManageEngine's Active Directory (AD) management and reporting solution. This vulnerability has been addressed. ManageEngine strongly urges users and administrators to upgrade to ADManager Plus build 7117.

ADManager Plus build 7117

ADManager Plus build 7117 fixes CVE-2021-42002. ManageEngine strongly urges users and administrators to update to ADManager Plus build 7117.

  Zoho Corporation Pvt. Ltd. All rights reserved.