zohocorp
559 tracked vulnerabilities.
CVE-2018-18980
HIGH
ManageEngine Network Configuration Manager & OpManager < 12.3.214 - XXE via RequestXML
Nov 06, 2018
CVSS 7.5
EPSS 0.31
CVE-2018-18949
CRITICAL
Zoho ManageEngine OpManager < 123222 - SQL Injection via Mail Server Settings
Nov 05, 2018
CVSS 9.8
EPSS 0.12
CVE-2018-18475
CRITICAL
Zoho ManageEngine OpManager < 12.3 build 123214 - Unrestricted Arbitrary File Upload
Oct 23, 2018
CVSS 9.8
EPSS 0.04
CVE-2018-18262
MEDIUM
Zoho ManageEngine OpManager 12.3 - Cross-Site Scripting
Oct 17, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-17596
MEDIUM
Zoho ManageEngine AssetExplorer <6.2.0 - XSS
Oct 02, 2018
CVSS 6.1
EPSS 0.02
CVE-2018-16364
HIGH
Zoho ManageEngine Applications Manager - Remote Code Execution via SMB Share Payload
Sep 26, 2018
CVSS 8.1
EPSS 0.02
CVE-2018-16965
MEDIUM
Zoho ManageEngine SupportCenter Plus <8.1.8109 - XSS
Sep 21, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-16833
MEDIUM
Zoho ManageEngine Desktop Central 10.0.271 - XSS
Sep 21, 2018
CVSS 6.1
EPSS 0.03
CVE-2018-17283
HIGH
NUCLEI
Zoho ManageEngine OpManager <12.3 Build 123196 - SQL Injection
Sep 21, 2018
CVSS 7.5
EPSS 0.08
CVE-2018-17243
CRITICAL
Zoho ManageEngine OpManager <12.3-123205 - SQL Injection
Sep 20, 2018
CVSS 9.8
EPSS 0.07
CVE-2018-13412
HIGH
Zohocorp Manageengine Desktop Central < 10.0.282 - Incorrect Permission Assignment
Sep 12, 2018
CVSS 7.8
EPSS 0.00
CVE-2018-13411
HIGH
Zohocorp Manageengine Desktop Central < 10.0.282 - Incorrect Permission Assignment
Sep 12, 2018
CVSS 8.8
EPSS 0.03
CVE-2018-15740
MEDIUM
ManageEngine ADManager Plus 6.5.7 - Stored Cross-Site Scripting in Workflow Delegation Requester Roles
Aug 28, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-15169
MEDIUM
Zoho ManageEngine Apps Mgr <13 - XSS
Aug 08, 2018
CVSS 6.1
EPSS 0.00
CVE-2018-15168
CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Aug 08, 2018
CVSS 9.8
EPSS 0.02
CVE-2018-11717
CRITICAL
Zoho ManageEngine Desktop Central < 100251 - Sensitive Information Exposure in Log Files
Jul 16, 2018
CVSS 9.8
EPSS 0.09
CVE-2018-11716
CRITICAL
ManageEngine Desktop Central < 100230 - Unauthenticated Sensitive Information Exposure via Log File Access
Jul 16, 2018
CVSS 9.8
EPSS 0.09
CVE-2018-10076
MEDIUM
Zoho ManageEngine EventLog Analyzer <11.12 - XSS
Jul 02, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-10075
MEDIUM
Zoho ManageEngine EventLog Analyzer <11.12 - XSS
Jul 02, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-13050
CRITICAL
Zoho ManageEngine Applications Manager 13.x < 13800 - SQL Injection via j_username Parameter
Jul 02, 2018
CVSS 9.8
EPSS 0.01
CVE-2018-12999
HIGH
Zoho ManageEngine Desktop Central 10.0.255 - Unauthenticated Arbitrary File Deletion via AgentTrayIconServlet
Jun 29, 2018
CVSS 7.5
EPSS 0.10
CVE-2018-12998
MEDIUM
NUCLEI
Zohocorp Firewall Analyzer - XSS
Jun 29, 2018
CVSS 6.1
EPSS 0.54
CVE-2018-12997
HIGH
Zohocorp Firewall Analyzer - Information Disclosure
Jun 29, 2018
CVSS 7.5
EPSS 0.04
CVE-2018-12996
MEDIUM
ManageEngine Applications Manager < 13 - Reflected Cross-Site Scripting via GraphicalView.do Method Parameter
Jun 29, 2018
CVSS 6.1
EPSS 0.01
CVE-2018-11808
CRITICAL
Zoho ManageEngine Apps Mgr <13-13740 - Privilege Escalation
Jun 06, 2018
CVSS 9.1
EPSS 0.04
Products
manageengine_applications_manager 56
manageengine_opmanager 56
manageengine_admanager_plus 53
manageengine_adaudit_plus 52
manageengine_adselfservice_plus 51
manageengine_servicedesk_plus 50
manageengine_desktop_central 48
manageengine_supportcenter_plus 31
manageengine_exchange_reporter_plus 28
manageengine_netflow_analyzer 28
manageengine_assetexplorer 26
manageengine_servicedesk_plus_msp 26
manageengine_password_manager_pro 22
manageengine_eventlog_analyzer 19
manageengine_network_configuration_manager 14
manageengine_pam360 14
manageengine_remote_access_plus 14
manageengine_firewall_analyzer 12
manageengine_access_manager_plus 11
manageengine_it360 9
manageengine_log360 9
ManageEngine Exchange Reporter Plus 8
manageengine_endpoint_central 8
manageengine_oputils 8
manageengine_analytics_plus 7
manageengine_datasecurity_plus 6
manageengine_opmanager_msp 6
manageengine_opmanager_plus 6
manageengine_cloud_security_plus 5
manageengine_key_manager_plus 5
Quick Filters