← Back to browse · API

CVE-2023-28341

Severity
MEDIUM
CVSS
6.1
EPSS
0.98701
Risk score
58.95
CISA KEV
No
PoC
No
Published
2023-04-11
Modified
2025-02-10
First seen
2026-08-07
Aliases
EUVD-2023-32039, GHSA-34MM-8VXQ-7M2J
Products
n/a:n/a n/a
Sources
euvd EUVD-2023-32039

Description

Stored Cross site scripting (XSS) vulnerability in Zoho ManageEngine Applications Manager through 16340 allows an unauthenticated user to inject malicious javascript on the incorrect login details page.

References