PT-2026-96713 · Manageengine · Adselfservice Plus

CVE-2026-75791

·

Published

2026-09-22

·

Updated

2026-09-22

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions ManageEngine ADSelfService Plus versions prior to build 7001
Description An authentication bypass exists in the REST API, allowing an attacker to gain unauthorized access to the system.
Recommendations Update ManageEngine ADSelfService Plus to build 7001 or later.

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-75791

Affected Products

Adselfservice Plus