Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2021-40539 — Exploit for CVE-2021-40539: RCE in Zoho ManageEngine ADSelfService Plus. Includes detection script, Fofa search syntax, and webshell deployment for penetration testing. | Kitploit
Tools/GitHubGitHub/lpyydxs/cve-2021-40539
ReconnaissanceVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRemote Access Tool
GitHublpyydxs/cve-2021-40539

CVE-2021-40539

Exploit for CVE-2021-40539: RCE in Zoho ManageEngine ADSelfService Plus. Includes detection script, Fofa search syntax, and webshell deployment for penetration testing.

View Repository
131 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2021-40539

CVE-2021-40539: ADSelfService Plus RCE Vulnerability

  1. Vulnerability Description Zoho ManageEngine ADSelfService Plus is ZOHO's integrated self-service password management and single sign-on solution for Active Directory and cloud applications.

CVE-2021-40539 Zoho ManageEngine ADSelfService Plus 6113 and earlier versions have a REST API authentication bypass vulnerability. Remote attackers can exploit this vulnerability to control affected systems. This vulnerability has a CVSS score of 9.33 and a severity rating of Critical.

  1. Exploitation Step 1: FoFa query statement
# Fofa搜索语法
"ADSelfService"
app="ZOHO-ManageEngine-ADSelfService"
header="JSESSIONIDADSSP"    //推荐


Step 2: Randomly find targets and use the following detection script to test for the vulnerability....

https://github.com/synacktiv/CVE-2021-40539/blob/main/exploit.py
使用方式:
C:\Users\26629\Desktop\CVE-2021-40539-main>python39 exploit.py
usage: exploit.py [-h] -t TARGET [-w WEBSHELL] [-j JAVA_CLASS] [-s]
exploit.py: error: the following arguments are required: -t/--target

Step 3: Use Godzilla to connect and perform verification testing.... https://ip/help/admin-guide/test.jsp

I uploaded a batch detection script; everyone can download it and continue to improve it.

Download Tool