VYPR
Medium severity6.1NVD Advisory· Published Jun 5, 2018· Updated Jun 17, 2026

CVE-2016-9490

CVE-2016-9490

Description

ManageEngine Applications Manager versions 12 and 13 before build 13200 suffer from a Reflected Cross-Site Scripting vulnerability. Applications Manager is prone to a Cross-Site Scripting vulnerability in parameter LIMIT, in URL path /DiagAlertAction.do?REQTYPE=AJAX&LIMIT=1233. The URL is also available without authentication.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:manageengine:applications_manager:12.0:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:manageengine:applications_manager:12.0:*:*:*:*:*:*:*
    • cpe:2.3:a:manageengine:applications_manager:13.0:*:*:*:*:*:*:*
    • (no CPE)range: <13200
    • (no CPE)range: 12

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.