zohocorp

559 tracked vulnerabilities.

CVE-2017-17552 HIGH
ManageEngine ADManager Plus < 6.6 - Cross-Site Request Forgery via LoadFrame src Parameter
Feb 07, 2018
CVSS 8.8
EPSS 0.00
CVE-2017-17698 MEDIUM
ManageEngine Password Manager Pro 9.0-9.4 - Reflected XSS in SearchResult.ec and BulkAccessControlView.ec
Dec 15, 2017
CVSS 6.1
EPSS 0.02
CVE-2017-16851 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.12
CVE-2017-16850 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.12
CVE-2017-16849 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.12
CVE-2017-16848 CRITICAL
Zoho ManageEngine Apps Mgr <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.09
CVE-2017-16847 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.12
CVE-2017-16846 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 16, 2017
CVSS 9.8
EPSS 0.12
CVE-2017-16543 CRITICAL
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 05, 2017
CVSS 9.8
EPSS 0.02
CVE-2017-16542 HIGH
Zoho ManageEngine Applications Manager <13 - SQL Injection
Nov 05, 2017
CVSS 8.8
EPSS 0.01
CVE-2017-14582 MEDIUM
Zoho Site24x7 Mobile Network Poller <1.1.5 - Info Disclosure
Sep 30, 2017
CVSS 5.9
EPSS 0.00
CVE-2017-14123 HIGH
Zoho ManageEngine Firewall Analyzer 12200 - RCE
Sep 04, 2017
CVSS 8.8
EPSS 0.04
CVE-2017-11687 MEDIUM
Zoho ManageEngine Event Log Analyzer <11.5 - XSS
Jul 27, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-11686 MEDIUM
Zoho ManageEngine Event Log Analyzer <11.5 - XSS
Jul 27, 2017
CVSS 6.1
EPSS 0.02
CVE-2017-11685 MEDIUM
Zoho ManageEngine Event Log Analyzer <11.5 - XSS
Jul 27, 2017
CVSS 6.1
EPSS 0.00
CVE-2017-11346 CRITICAL
ManageEngine Desktop Central < 10.0 - Remote Code Execution via Help Desk Video Upload
Jul 17, 2017
CVSS 9.8
EPSS 0.25
CVE-2017-7213 CRITICAL
Zoho ManageEngine Desktop Central <build 100082 - RCE
May 15, 2017
CVSS 10.0
EPSS 0.10
CVE-2016-1159 MEDIUM
ZOHO Password Manager Pro 8.3.0-8.4.0 - Exposure of Sensitive Information via Hidden Service
Mar 09, 2020
CVSS 6.5
EPSS 0.00
CVE-2016-9498 CRITICAL
ManageEngine Applications Manager 12-13 < 13200 - Unauthenticated Remote Code Execution via Unsafe Java Deserialization
Jul 13, 2018
CVSS 9.8
EPSS 0.60
CVE-2016-9491 MEDIUM
ManageEngine Applications Manager 12-13 < 13690 - Authenticated XML External Entity Injection
Jul 13, 2018
CVSS 4.9
EPSS 0.01
CVE-2016-9489 HIGH
ManageEngine Applications Manager 12-13 < 13200 - Authenticated Privilege Escalation via User Property Manipulation
Jul 13, 2018
CVSS 8.8
EPSS 0.00
CVE-2016-1161 HIGH
ManageEngine Password Manager Pro <8.5 - CSRF
Apr 20, 2017
CVSS 8.0
EPSS 0.00
CVE-2016-4890 MEDIUM
ZOHO ManageEngine ServiceDesk Plus < 9.1 - Sensitive Password Information Exposure via Insecure Cookie Generation
Apr 14, 2017
CVSS 5.3
EPSS 0.03
CVE-2016-4889 HIGH
Zohocorp Servicedesk Plus < 8.2 - Access Control
Apr 14, 2017
CVSS 8.8
EPSS 0.04
CVE-2016-4888 MEDIUM
ZOHO ManageEngine ServiceDesk Plus < 9.2 - Cross-Site Scripting
Apr 14, 2017
CVSS 5.4
EPSS 0.02