Medium severity6.5NVD Advisory· Published Apr 11, 2023· Updated Jun 17, 2026
CVE-2023-28340
CVE-2023-28340
Description
Zoho ManageEngine Applications Manager through 16320 allows the admin user to conduct an XXE attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:zohocorp:manageengine_applications_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:zohocorp:manageengine_applications_manager:*:*:*:*:*:*:*:*range: <16.3
- cpe:2.3:a:zohocorp:manageengine_applications_manager:16.3:build16300:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_applications_manager:16.3:build16310:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_applications_manager:16.3:build16320:*:*:*:*:*:*
- Zoho/ManageEngine Applications Managerdescription
- Range: <=16320
Patches
Vulnerability mechanics
References
2- www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2023-28340.htmlnvdPatchVendor Advisory
- manageengine.comnvdProduct
News mentions
0No linked articles in our index yet.