Manageengine Adselfservice Plus

by Zohocorp

Take action — actively targeted

Manageengine Adselfservice Plus is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 37.0%
Confirmed actively exploited (CISA) 6.5%
Public exploit code available 0.0%
Based on 46 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2021-40539 9.8 94.4% Yes
CVE-2022-47966 9.8 94.4% Yes
CVE-2022-28810 6.8 91.8% Yes
CVE-2023-28342 7.5 79.6%
CVE-2021-28958 9.8 55.3%
CVE-2024-0252 8.8 29.1%
CVE-2021-37422 9.8 26.4%
CVE-2022-34829 7.5 25.5%
CVE-2022-24681 6.1 23.4%
CVE-2021-33055 9.8 21.8%
CVE-2021-37423 9.8 21.2%
CVE-2021-37417 9.8 18.6%
CVE-2021-20147 5.3 18.0%
CVE-2021-33256 8.8 17.4%
CVE-2018-5353 9.8 15.3%
CVE-2022-28987 5.3 11.2%
CVE-2020-11518 9.8 10.4%
CVE-2021-37421 9.8 8.9%
CVE-2022-29457 8.8 8.3%
CVE-2019-7162 9.1 7.8%
52
/ 100
high-risk
Active Threat 49/50 · Critical
Exploit Availability 3/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.