zohocorp

559 tracked vulnerabilities.

CVE-2016-6603 CRITICAL
ZOHO WebNMS Framework 5.2-5.2 SP1 - Auth Bypass
Jan 23, 2017
CVSS 9.8
EPSS 0.70
CVE-2016-6602 CRITICAL
ZOHO WebNMS Framework 5.2-5.2 SP1 - Info Disclosure
Jan 23, 2017
CVSS 9.8
EPSS 0.48
CVE-2016-6601 HIGH NUCLEI
ZOHO WebNMS Framework <5.2-5.2 SP1 - Path Traversal
Jan 23, 2017
CVSS 7.5
EPSS 0.93
CVE-2016-6600 CRITICAL
ZOHO WebNMS Framework <5.2-5.2 SP1 - Path Traversal
Jan 23, 2017
CVSS 9.8
EPSS 0.91
CVE-2015-9107 CRITICAL
Zoho ManageEngine OpManager 11-12.2 - Credential Exposure via Weak Custom Encryption
Aug 04, 2017
CVSS 9.8
EPSS 0.02
CVE-2015-2560 CRITICAL
ManageEngine Desktop Central 9 - Unauthenticated Administrative Password Reset via DCOperationsServlet
Aug 02, 2017
CVSS 9.8
EPSS 0.20
CVE-2015-7781 HIGH
ManageEngine Firewall Analyzer <8.0 - Info Disclosure
Jun 27, 2017
CVSS 7.5
EPSS 0.07
CVE-2015-7780 MEDIUM NUCLEI
ManageEngine Firewall Analyzer <8.0 - Path Traversal
Jun 27, 2017
CVSS 6.5
EPSS 0.36
CVE-2015-7766
ZOHO ManageEngine OpManager <11.6 - Auth Bypass
Oct 09, 2015
EPSS 0.78
CVE-2015-7765
ZOHO ManageEngine OpManager <11.5.11600 - Auth Bypass
Oct 09, 2015
EPSS 0.78
CVE-2015-7387
ManageEngine EventLog Analyzer < 10.6 - SQL Injection via event/runQuery.do Query Parameter
Sep 28, 2015
EPSS 0.82
CVE-2015-5459
ManageEngine PMP <8.1 - SQL Injection
Jul 08, 2015
EPSS 0.01
CVE-2015-5150
ManageEngine SupportCenter Plus 7.90 - Authenticated Cross-Site Scripting via Query Parameter
Jun 30, 2015
EPSS 0.01
CVE-2015-5149
ManageEngine SupportCenter Plus 7.90 - Path Traversal & Arbitrary File Write via Attachment.jsp
Jun 30, 2015
EPSS 0.42
CVE-2015-5061
ManageEngine AssetExplorer 6.1 SP 6112 - Authenticated Stored XSS via VendorDef.do
Jun 24, 2015
EPSS 0.00
CVE-2015-2169
ManageEngine AssetExplorer 6.1 - Cross-Site Scripting via Publisher Registry Entry
Jun 24, 2015
EPSS 0.04
CVE-2015-4418
Zoho NetFlow Analyzer <= build 10250 - Unauthenticated Password Exposure via Autocomplete Attribute
Jun 09, 2015
EPSS 0.05
CVE-2015-2961
Zoho NetFlow Analyzer <10250 - CSRF
Jun 09, 2015
EPSS 0.00
CVE-2015-2960
ManageEngine NetFlow Analyzer <= build 10250 - Cross-Site Scripting
Jun 09, 2015
EPSS 0.00
CVE-2015-2959
Zoho NetFlow Analyzer <10250 - Info Disclosure
Jun 09, 2015
EPSS 0.01
CVE-2015-1026
ZOHO ManageEngine ADManager Plus <6.2.6270 - XSS
Mar 11, 2015
EPSS 0.00
CVE-2015-1479
ZOHO ManageEngine SDP <9.0.9031 - SQL Injection
Feb 04, 2015
EPSS 0.11
CVE-2015-0866
ManageEngine SupportCenter Plus < 7.9 - Cross-Site Scripting via HomePage.do Parameters
Feb 02, 2015
EPSS 0.00
CVE-2014-7863 HIGH
ManageEngine Applications Manager <11.9/OpManager 8-11.5/IT360 <=10.5 - Unauthenticated Arbitrary File Read
Feb 08, 2020
CVSS 7.5
EPSS 0.88
CVE-2014-5007 CRITICAL
ManageEngine Desktop Central 7.0-9.0 - Path Traversal & Arbitrary File Write via AgentLogUploader
Jan 17, 2020
CVSS 9.8
EPSS 0.49