Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

ADAudit Plus — Vulnerabilities & Security Advisories 35

All 35 CVE vulnerabilities found in ADAudit Plus, with AI-generated Chinese analysis, references, and POCs.

This page presents a comprehensive aggregation of Common Weakness Enumerations related to the ADAudit Plus software produced by ManageEngine. It serves as a centralized reference point for security professionals, auditors, and IT administrators seeking to understand the specific threat landscape surrounding this directory auditing solution. The collection encompasses a wide variety of vulnerability types, including authentication bypasses, privilege escalation flaws, cross-site scripting issues, and improper access control mechanisms that have been identified within the product’s ecosystem. The data spans from the early release cycles of the software through recent updates, providing a longitudinal view of how security issues have emerged, been patched, or persisted over time. By organizing these findings by weakness type and version, the resource allows users to track the evolution of vendor advisories and response times. Readers can effectively understand the prevalence of specific weakness classes within this particular application context, enabling more informed risk assessments. Furthermore, users can look up a product's vulnerability history to identify patterns in code quality or remediation efficiency. This structured approach facilitates deeper analysis for penetration testers evaluating legacy systems and for compliance officers documenting security postures. The information is presented neutrally to support objective decision-making regarding upgrade priorities and mitigation strategies without bias or promotional content.

Vendor: ManageEngine

CVE IDTitleCVSSSeverityPublished
CVE-2025-41444 SQL Injection CWE-89 8.3 High2025-06-09
CVE-2025-36528 SQL Injection CWE-89 8.3 High2025-06-09
CVE-2025-27709 SQL Injection CWE-89 8.3 High2025-06-09
CVE-2025-41407 SQL Injection CWE-89 8.3 High2025-05-23
CVE-2025-36527 SQL Injection CWE-89 8.3 High2025-05-23
CVE-2025-41403 SQL Injection CWE-89 8.3 High2025-05-22
CVE-2025-3836 SQL Injection CWE-89 8.3 High2025-05-22
CVE-2025-3834 SQL Injection CWE-89 8.1 High2025-05-14
CVE-2024-49574 SQL Injection CWE-89 8.3 High2024-11-18
CVE-2024-36485 SQL Injection CWE-89 8.3 High2024-11-04
CVE-2024-5608 SQL Injection CWE-89 8.3 High2024-10-24
CVE-2024-5586 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-5556 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-5490 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-36514 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-36515 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-36516 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-36517 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-5467 SQL Injection CWE-89 8.3 High2024-08-23
CVE-2024-36034 SQL Injection CWE-89 8.3 High2024-08-12
CVE-2024-36035 SQL Injection CWE-89 8.3 High2024-08-12
CVE-2024-36518 SQL Injection CWE-89 8.3 High2024-08-12
CVE-2024-5487 SQL Injection CWE-89 8.3 High2024-08-12
CVE-2024-5527 SQL Injection CWE-89 8.3 High2024-08-12
CVE-2024-36037 Insufficient Access Control Vulnerability CWE-863 5.5 Medium2024-05-27
CVE-2024-36036 Insufficient Access Control Vulnerability 4.2 Medium2024-05-27
CVE-2024-21791 SQL Injection in ADAudit Plus CWE-89 4.7 Medium2024-05-22
CVE-2023-49335 ZOHO ManageEngine ADAudit Plus 安全漏洞 8.3 High2024-05-20
CVE-2023-49334 ZOHO ManageEngine ADAudit Plus 安全漏洞 8.3 High2024-05-20
CVE-2023-49333 ZOHO ManageEngine ADAudit Plus 安全漏洞 8.3 High2024-05-20

All 35 known CVE vulnerabilities affecting ADAudit Plus with full Chinese analysis, references, and POCs where available.