CVE-2021-40539
ID: 9abe0b22-9b2b-5ea5-b049-973bf1aa4380
STIX ID: report--9abe0b22-9b2b-5ea5-b049-973bf1aa4380
Feed Name: Arctic Wolf Blog
Threat Score
This advisory describes a critical REST API authentication-bypass (CVE-2021-40539, CVSS 9.8) in ManageEngine ADSelfService Plus that allows unauthenticated remote code execution; it was actively exploited to deploy webshells and maintain persistence, attributed to a China-based threat group, and has prompted alerts from FBI/CISA and vendor patches—organisations are advised to apply the September 6, 2021 patch immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
