Vulnerabilities > Zohocorp > Manageengine Log360 > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-29 CVE-2021-40176 Cross-site Scripting vulnerability in Zohocorp Manageengine Log360 5.0/5.1/5.2
Zoho ManageEngine Log360 before Build 5225 allows stored XSS.
network
low complexity
zohocorp CWE-79
6.1
2021-08-29 CVE-2021-40178 Cross-site Scripting vulnerability in Zohocorp Manageengine Log360 5.0/5.1/5.2
Zoho ManageEngine Log360 before Build 5224 allows stored XSS via the LOGO_PATH key value in the logon settings.
network
low complexity
zohocorp CWE-79
6.1