ADSelfService Plus 5817 released with an important security fix
ADSelfService Plus 5817 released with an important security fix
Hello Everyone,
We have released a new build of ADSelfService Plus, 5817, which fixes a security vulnerability.
Issues Fixed :
Fixed a vulnerability which allowed a user to enable integration with other supported ManageEngine products bypassing authentication [CVE-2020-24786] , which was reported by Florian Hauser.
Issue in using Push Notification authentication for logging into ADSelfService Plus when TFA is enabled.
How to update?
A service pack for this build will be released soon. Stay tuned.