2024-05-25 21:48:12 +02:00
### [CVE-2023-31492](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-31492)



### Description
Zoho ManageEngine ADManager Plus version 7182 and prior disclosed the default passwords for the account restoration of unauthorized domains to the authenticated users.
### POC
#### Reference
- http://packetstormsecurity.com/files/177091/ManageEngine-ADManager-Plus-Recovery-Password-Disclosure.html
2024-06-07 17:53:02 +00:00
- https://github.com/passtheticket/vulnerability-research/blob/main/manage-engine-apps/admanager-recovery-password-disclosure.md
2024-05-25 21:48:12 +02:00
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds