HTTP: Zoho ManageEngine ADSelfService Plus Authentication Bypass

This signature detects attempts to exploit a known vulnerability against Zoho ManageEngine ADSelfService Plus. A successful attack can lead to authentication bypass.

Extended Description

Zoho ManageEngine ADSelfService Plus version 6113 and prior is vulnerable to REST API authentication bypass with resultant remote code execution.

Affected Products

Zohocorp manageengine_adselfservice_plus

Short Name
HTTP:CTS:ZOHO-ADSELFSRVC-AUTH
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
ADSelfService Authentication Bypass CVE-2021-40539 ManageEngine Plus Zoho
Release Date
10/25/2021
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3430
False Positive
Unknown
Vendors

Zohocorp

CVSS Score

7.5

Found a potential security threat?