zohocorp

559 tracked vulnerabilities.

CVE-2014-6039 HIGH
ManageEngine EventLog Analyzer 7-9.9 - Credentials Disclosure
Jan 13, 2020
CVSS 7.5
EPSS 0.84
CVE-2014-6038 HIGH
ManageEngine Eventlog Analyzer Managed Hosts Administrator Credential Disclosure
Jan 13, 2020
CVSS 7.5
EPSS 0.84
CVE-2014-7862 CRITICAL
ManageEngine Desktop Central < 90109 - Unauthenticated Administrator Account Creation via DCPluginServelet
Jan 04, 2018
CVSS 9.8
EPSS 0.81
CVE-2014-9331
ZOHO ManageEngine Desktop Central <9 - CSRF
Feb 04, 2015
EPSS 0.02
CVE-2014-7864
ManageEngine OpManager 8-11.5 - SQL Injection via FailOverHelperServlet Parameters
Feb 04, 2015
EPSS 0.32
CVE-2014-100002
ManageEngine SupportCenter Plus < 7.9 - Path Traversal via WorkOrder.do Attach Parameter
Jan 13, 2015
EPSS 0.79
CVE-2014-3779
ManageEngine ADSelfService Plus < 5.2 - Cross-Site Scripting via GroupSubscription.do Name Parameter
Jan 07, 2015
EPSS 0.01
CVE-2014-9371
ManageEngine Desktop Central MSP <90075 - RCE
Dec 16, 2014
EPSS 0.10
CVE-2014-7866
ZOHO ManageEngine OpManager 8-11.4 Path Traversal & Arbitrary File Write via Servlets
Dec 10, 2014
EPSS 0.80
CVE-2014-3997
ManageEngine Password Manager Pro 5-7 build 7003 - SQL Injection via MetadataServlet sv Parameter
Dec 05, 2014
EPSS 0.01
CVE-2014-7868
ManageEngine OpManager 11.3-11.4, IT360 10.3-10.4, Social IT Plus 11.0 SQL Injection
Dec 04, 2014
EPSS 0.66
CVE-2014-7867
ZOHO ManageEngine OpManager 11.3-11.4, IT360 10.3-10.4, Social IT Plus 11.0 - SQL Injection via probeName Parameter
Dec 04, 2014
EPSS 0.62
CVE-2014-6036
ManageEngine OpManager <11.3, Social IT Plus 11.0, IT360 <=10.4 - Path Traversal & File Deletion
Dec 04, 2014
EPSS 0.36
CVE-2014-6035
ManageEngine OpManager < 11.3 - Path Traversal and Arbitrary File Write via FileCollector Servlet FILENAME Parameter
Dec 04, 2014
EPSS 0.12
CVE-2014-6034
ManageEngine OpManager 8.8-11.3, Social IT Plus 11.0, IT360 <=10.4 - Path Traversal & Arbitrary File Write
Dec 04, 2014
EPSS 0.87
CVE-2014-5446
ManageEngine Netflow Analyzer 8.6-10.2 and IT360 10.3 - Path Traversal via DisplayChartPDF Filename Parameter
Dec 04, 2014
EPSS 0.66
CVE-2014-5445
ManageEngine Netflow Analyzer 8.6-10.2 and IT360 10.3 - Path Traversal via schFilePath Parameter
Dec 04, 2014
EPSS 0.91
CVE-2014-8498
ManageEngine Password Manager Pro < 7.1 - Authenticated SQL Injection via BulkEditSearchResult.cc SEARCH_ALL Parameter
Nov 17, 2014
EPSS 0.05
CVE-2014-6037
ManageEngine EventLog Analyzer 9.0/8.2 - Remote Code Execution via ZIP Traversal
Oct 26, 2014
EPSS 0.82
CVE-2014-5006
ManageEngine Desktop Central < 9.0 - Remote Code Execution via File Upload Path Traversal
Oct 21, 2014
EPSS 0.56
CVE-2014-5005
ManageEngine Desktop Central < 9.0 - Remote Code Execution via File Upload Path Traversal
Oct 21, 2014
EPSS 0.86
CVE-2014-6043
ManageEngine EventLog Analyzer 9.0 build 9002 and 8.2 build 8020 - Authenticated Database Access via Direct Request
Sep 11, 2014
EPSS 0.05
CVE-2014-4930
ManageEngine EventLog Analyzer <9.0 build 9002 - XSS
Aug 29, 2014
EPSS 0.00
CVE-2014-5103
ManageEngine EventLog Analyzer 9 build 9000 - Cross-Site Scripting via j_username Parameter
Jul 25, 2014
EPSS 0.00
CVE-2014-2670
ZOHO ManageEngine OpStor <build 8500 - XSS
Mar 29, 2014
EPSS 0.01