A reflected Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Applications Manager 13 before build 13820 allows remote attackers to inject arbitrary web script or HTML via the /deleteMO.do method parameter.Referenceshttps://www.manageengine.com/products/applications_manager/issues.htmlhttps://www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2018-15169.htmlhttps://github.com/x-f1v3/ForCve/issues/3