zohocorp

559 tracked vulnerabilities.

CVE-2018-18980 HIGH
ManageEngine Network Configuration Manager & OpManager < 12.3.214 - XXE via RequestXML
Nov 06, 2018
CVSS 7.5
EPSS 0.31
CVE-2018-18949 CRITICAL
Zoho ManageEngine OpManager < 123222 - SQL Injection via Mail Server Settings
Nov 05, 2018
CVSS 9.8
EPSS 0.12
CVE-2018-18475 CRITICAL
Zoho ManageEngine OpManager < 12.3 build 123214 - Unrestricted Arbitrary File Upload
Oct 23, 2018
CVSS 9.8
EPSS 0.04
CVE-2018-18262 MEDIUM
Zoho ManageEngine OpManager 12.3 - Cross-Site Scripting
Oct 17, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-17596 MEDIUM
Zoho ManageEngine AssetExplorer <6.2.0 - XSS
Oct 02, 2018
CVSS 6.1
EPSS 0.02
CVE-2018-16364 HIGH
Zoho ManageEngine Applications Manager - Remote Code Execution via SMB Share Payload
Sep 26, 2018
CVSS 8.1
EPSS 0.02
CVE-2018-16965 MEDIUM
Zoho ManageEngine SupportCenter Plus <8.1.8109 - XSS
Sep 21, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-16833 MEDIUM
Zoho ManageEngine Desktop Central 10.0.271 - XSS
Sep 21, 2018
CVSS 6.1
EPSS 0.03
CVE-2018-17283 HIGH NUCLEI
Zoho ManageEngine OpManager <12.3 Build 123196 - SQL Injection
Sep 21, 2018
CVSS 7.5
EPSS 0.08
CVE-2018-17243 CRITICAL
Zoho ManageEngine OpManager <12.3-123205 - SQL Injection
Sep 20, 2018
CVSS 9.8
EPSS 0.07
CVE-2018-13412 HIGH
Zohocorp Manageengine Desktop Central < 10.0.282 - Incorrect Permission Assignment
Sep 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-13411 HIGH
Zohocorp Manageengine Desktop Central < 10.0.282 - Incorrect Permission Assignment
Sep 12, 2018
CVSS 8.8
EPSS 0.03
CVE-2018-15740 MEDIUM
ManageEngine ADManager Plus 6.5.7 - Stored Cross-Site Scripting in Workflow Delegation Requester Roles
Aug 28, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-15169 MEDIUM
Zoho ManageEngine Apps Mgr <13 - XSS
Aug 08, 2018
CVSS 6.1
EPSS 0.00
CVE-2018-15168 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Aug 08, 2018
CVSS 9.8
EPSS 0.02
CVE-2018-11717 CRITICAL
Zoho ManageEngine Desktop Central < 100251 - Sensitive Information Exposure in Log Files
Jul 16, 2018
CVSS 9.8
EPSS 0.09
CVE-2018-11716 CRITICAL
ManageEngine Desktop Central < 100230 - Unauthenticated Sensitive Information Exposure via Log File Access
Jul 16, 2018
CVSS 9.8
EPSS 0.09
CVE-2018-10076 MEDIUM
Zoho ManageEngine EventLog Analyzer <11.12 - XSS
Jul 02, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-10075 MEDIUM
Zoho ManageEngine EventLog Analyzer <11.12 - XSS
Jul 02, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-13050 CRITICAL
Zoho ManageEngine Applications Manager 13.x < 13800 - SQL Injection via j_username Parameter
Jul 02, 2018
CVSS 9.8
EPSS 0.01
CVE-2018-12999 HIGH
Zoho ManageEngine Desktop Central 10.0.255 - Unauthenticated Arbitrary File Deletion via AgentTrayIconServlet
Jun 29, 2018
CVSS 7.5
EPSS 0.10
CVE-2018-12998 MEDIUM NUCLEI
Zohocorp Firewall Analyzer - XSS
Jun 29, 2018
CVSS 6.1
EPSS 0.54
CVE-2018-12997 HIGH
Zohocorp Firewall Analyzer - Information Disclosure
Jun 29, 2018
CVSS 7.5
EPSS 0.04
CVE-2018-12996 MEDIUM
ManageEngine Applications Manager < 13 - Reflected Cross-Site Scripting via GraphicalView.do Method Parameter
Jun 29, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-11808 CRITICAL
Zoho ManageEngine Apps Mgr <13-13740 - Privilege Escalation
Jun 06, 2018
CVSS 9.1
EPSS 0.04