zohocorp
559 tracked vulnerabilities.
CVE-2021-33617
MEDIUM
Zoho ManageEngine Password Manager Pro <11.2.11200 - Info Disclosure
Jul 31, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-20110
CRITICAL
ManageEngine Asset Explorer Agent 1.0.34 - Remote Code Execution via Integer Overflow in HTTP Response Handling
Jul 19, 2021
CVSS 9.8
EPSS 0.02
CVE-2021-20109
HIGH
ManageEngine AssetExplorer - Heap Overflow via Unvalidated HTTPS Certificate
Jul 19, 2021
CVSS 7.5
EPSS 0.03
CVE-2021-20108
HIGH
ManageEngine Asset Explorer Agent 1.0.34 - Denial of Service via Memory Leak in AEAgent.cpp
Jul 19, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-36772
MEDIUM
ManageEngine ADManager Plus < 7110 - Stored Cross-Site Scripting
Jul 17, 2021
CVSS 6.1
EPSS 0.04
CVE-2021-36771
MEDIUM
ManageEngine ADManager Plus < 7110 - Reflected Cross-Site Scripting
Jul 17, 2021
CVSS 6.1
EPSS 0.04
CVE-2021-33911
CRITICAL
Zoho ManageEngine ADManager Plus < 7110 - Remote Code Execution
Jul 17, 2021
CVSS 9.8
EPSS 0.07
CVE-2021-31874
MEDIUM
Zoho ManageEngine ADSelfService Plus <6104 - Info Disclosure
Jul 02, 2021
CVSS 5.9
EPSS 0.01
CVE-2021-31813
MEDIUM
Zoho ManageEngine Applications Manager < 15130 - Stored Cross-Site Scripting via AD User Import
Jul 01, 2021
CVSS 5.4
EPSS 0.23
CVE-2021-31531
CRITICAL
ManageEngine ServiceDesk Plus MSP < 10521 - Server-Side Request Forgery
Jun 29, 2021
CVSS 9.8
EPSS 0.06
CVE-2021-31530
HIGH
ManageEngine ServiceDesk Plus MSP < 10522 - Information Disclosure
Jun 29, 2021
CVSS 7.5
EPSS 0.04
CVE-2021-31160
HIGH
Zoho ManageEngine ServiceDesk Plus MSP <10521 - Info Disclosure
Jun 29, 2021
CVSS 7.5
EPSS 0.10
CVE-2021-28958
CRITICAL
ManageEngine ADSelfService Plus <= 6101 - Unauthenticated Remote Code Execution
Jun 25, 2021
CVSS 9.8
EPSS 0.49
CVE-2021-31857
MEDIUM
Zoho ManageEngine Password Manager Pro <11.1.11104 - Info Disclosure
Jun 16, 2021
CVSS 5.9
EPSS 0.01
CVE-2021-31159
MEDIUM
Zoho ManageEngine ServiceDesk Plus MSP <10519 - Info Disclosure
Jun 16, 2021
CVSS 5.3
EPSS 0.24
CVE-2021-20081
HIGH
ManageEngine ServiceDesk Plus <11205 - Command Injection
Jun 10, 2021
CVSS 7.2
EPSS 0.57
CVE-2021-28382
MEDIUM
Zoho ManageEngine Key Manager Plus <6.01 - XSS
Jun 07, 2021
CVSS 5.4
EPSS 0.18
CVE-2021-27956
MEDIUM
Zoho ManageEngine ADSelfService Plus <6104 - XSS
May 20, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-28959
CRITICAL
Zoho ManageEngine Eventlog Analyzer <= 12147 - Path Traversal & RCE via ZIP Entry
Apr 30, 2021
CVSS 9.8
EPSS 0.24
CVE-2021-3287
CRITICAL
NUCLEI
ManageEngine OpManager SumPDU Java Deserialization
Apr 22, 2021
CVSS 9.8
EPSS 0.88
CVE-2021-20080
MEDIUM
ManageEngine ServiceDesk Plus < 11200 - Unauthenticated Stored Cross-Site Scripting via XML Asset Upload
Apr 09, 2021
CVSS 6.1
EPSS 0.19
CVE-2021-20078
CRITICAL
ManageEngine OpManager < 125346 - Remote Denial of Service via Spark Gateway Path Traversal
Apr 01, 2021
CVSS 9.1
EPSS 0.55
CVE-2021-27214
MEDIUM
ManageEngine ADSelfService Plus <= 6013 - Unauthenticated Server-Side Request Forgery via ProductConfig Servlet
Feb 19, 2021
CVSS 6.1
EPSS 0.07
CVE-2020-27449
MEDIUM
Zoho ManageEngine Password Manager Pro <11001 - XSS
Aug 11, 2023
CVSS 6.1
EPSS 0.01
CVE-2020-21642
CRITICAL
ManageEngine Analytics Plus < 4350 - Remote Code Execution via ZDBQAREFSUBDIR Path Traversal
Aug 15, 2022
CVSS 9.8
EPSS 0.07
Products
manageengine_applications_manager 56
manageengine_opmanager 56
manageengine_admanager_plus 53
manageengine_adaudit_plus 52
manageengine_adselfservice_plus 51
manageengine_servicedesk_plus 50
manageengine_desktop_central 48
manageengine_supportcenter_plus 31
manageengine_exchange_reporter_plus 28
manageengine_netflow_analyzer 28
manageengine_assetexplorer 26
manageengine_servicedesk_plus_msp 26
manageengine_password_manager_pro 22
manageengine_eventlog_analyzer 19
manageengine_network_configuration_manager 14
manageengine_pam360 14
manageengine_remote_access_plus 14
manageengine_firewall_analyzer 12
manageengine_access_manager_plus 11
manageengine_it360 9
manageengine_log360 9
ManageEngine Exchange Reporter Plus 8
manageengine_endpoint_central 8
manageengine_oputils 8
manageengine_analytics_plus 7
manageengine_datasecurity_plus 6
manageengine_opmanager_msp 6
manageengine_opmanager_plus 6
manageengine_cloud_security_plus 5
manageengine_key_manager_plus 5
Quick Filters