High severity8.8NVD Advisory· Published Oct 13, 2021· Updated Jun 17, 2026
CVE-2021-20131
CVE-2021-20131
Description
ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the Personalization interface.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:zohocorp:manageengine_admanager_plus:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:*:*:*:*:*:*:*:*range: <7.1
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:-:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7100:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7101:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7102:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7110:*:*:*:*:*:*
- ManageEngine/ADManager Plusdescription
- Range: <=7111
Patches
Vulnerability mechanics
References
1- www.tenable.com/security/research/tra-2021-43nvdVendor Advisory
News mentions
0No linked articles in our index yet.