logo

CVE-2021-40539

ID: 9abe0b22-9b2b-5ea5-b049-973bf1aa4380

STIX ID: report--9abe0b22-9b2b-5ea5-b049-973bf1aa4380

Feed Name: Arctic Wolf Blog

Threat Score
85/100

Date Published: 2021-11-11

Date Updated: 2026-04-26

...
...

This advisory describes a critical REST API authentication-bypass (CVE-2021-40539, CVSS 9.8) in ManageEngine ADSelfService Plus that allows unauthenticated remote code execution; it was actively exploited to deploy webshells and maintain persistence, attributed to a China-based threat group, and has prompted alerts from FBI/CISA and vendor patches—organisations are advised to apply the September 6, 2021 patch immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.