Direct Inward Dialing: +1 408 916 9393
An authentication bypass vulnerability (CVE-2021-42002) leading to a file-upload remote code execution in ManageEngine ADManager Plus has been addressed recently. This article explains the vulnerability and the steps to fix it.
What is the issue?
An authentication bypass vulnerability that could lead to a file-upload remote code execution.
Whom does it affect?
Users with ADManager Plus builds 7114 and earlier are affected.
What is the severity level of this vulnerability?
This is a critical vulnerability.
How to protect your ADManager Plus installation?
If you use ADManager Plus builds 7114 or earlier versions, please upgrade the product to the latest build by following these steps:
Support:
If you need additional information, face issues in performing the recommended steps, or need help in upgrading your instance to the latest build, please write to us at support@admanagerplus.com. You can also call us at +1-312-471-2233 (toll-free).
Select a language to translate the contents of this web page:
Fill this form, and we'll contact you rightaway.
Our technical support team will get in touch with you at the earliest."