zohocorp
559 tracked vulnerabilities.
CVE-2025-1723
HIGH
ManageEngine ADSelfService Plus <= 6510 - Authenticated Account Takeover via Session Mishandling
Mar 03, 2025
CVSS 8.1
EPSS 0.00
CVE-2024-50053
MEDIUM
Zohocorp ManageEngine <14920- SupportCentre Plus <14910 - XSS
Mar 21, 2025
CVSS 6.3
EPSS 0.00
CVE-2024-9097
LOW
ManageEngine Endpoint Central 11.3.2428.01-11.3.2428.26 - Insecure Direct Object Reference via Chat Username Change
Feb 05, 2025
CVSS 3.5
EPSS 0.00
CVE-2024-41140
HIGH
ManageEngine Applications Manager <= 174000 - Incorrect Authorization in Update User Function
Jan 29, 2025
CVSS 8.1
EPSS 0.00
CVE-2024-52323
HIGH
Zohocorp ManageEngine Analytics Plus <6100 - Info Disclosure
Nov 27, 2024
CVSS 8.1
EPSS 0.01
CVE-2024-49574
HIGH
Zohocorp ManageEngine ADAudit Plus <8123 - SQL Injection
Nov 18, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-10839
HIGH
ManageEngine SharePoint Manager Plus <= 4503 - Authenticated XML External Entity Injection in Management Option
Nov 08, 2024
CVSS 8.5
EPSS 0.00
CVE-2024-24409
HIGH
ManageEngine ADManager Plus <= 7203 - Privilege Escalation via Modify Computers Option
Nov 08, 2024
CVSS 8.8
EPSS 0.06
CVE-2024-10203
HIGH
Zohocorp Manageengine Endpoint Central < 11.3.2416.21 - Improper Privilege Management
Nov 07, 2024
CVSS 7.0
EPSS 0.00
CVE-2024-9459
HIGH
ManageEngine Exchange Reporter Plus <= 5718 - Authenticated SQL Injection in Reports Module
Nov 05, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36485
HIGH
Zohocorp ManageEngine ADAudit Plus <8121 - SQL Injection
Nov 04, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-48878
HIGH
ManageEngine ADManager Plus <= 7241 - SQL Injection in Archived Audit Report
Nov 04, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5608
HIGH
Zohocorp ManageEngine ADAudit Plus <8121 - SQL Injection
Oct 24, 2024
CVSS 8.3
EPSS 0.00
CVE-2024-38868
HIGH
ManageEngine Endpoint Central < 11.3.2400.15 - Incorrect Authorization during Device Isolation
Aug 30, 2024
CVSS 7.6
EPSS 0.00
CVE-2024-6204
HIGH
Zohocorp ManageEngine Exchange Reporter Plus <5715 - SQL Injection
Aug 30, 2024
CVSS 8.3
EPSS 0.00
CVE-2024-5546
HIGH
ManageEngine PAM360 < 7001 - Authenticated SQL Injection via Global Search Option
Aug 28, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-41150
MEDIUM
ManageEngine ServiceDesk Plus, ServiceDesk Plus MSP, and SupportCenter Plus < 14.7 - Stored XSS in Request Module
Aug 23, 2024
CVSS 6.3
EPSS 0.01
CVE-2024-38869
HIGH
ManageEngine Endpoint Central < 11.3.2416.04 & < 11.3.2400.25 - Incorrect Authorization
Aug 23, 2024
CVSS 8.3
EPSS 0.00
CVE-2024-5586
HIGH
ManageEngine ADAudit Plus < 8121 - Authenticated SQL Injection in Extranet Lockouts Report
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5556
HIGH
ManageEngine ADAudit Plus < 8.0 - Authenticated SQL Injection in Reports Module
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5490
HIGH
ManageEngine ADAudit Plus < 8.0 - Authenticated SQL Injection via Aggregate Reports Option
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5467
HIGH
ManageEngine ADAudit Plus < 8121 - Authenticated SQL Injection in Account Lockout Report
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5466
HIGH
ManageEngine OpManager and OpManager MSP < 12.7 - Authenticated Remote Code Execution via Deploy Agent Option
Aug 23, 2024
CVSS 8.8
EPSS 0.20
CVE-2024-36517
HIGH
Zohocorp ManageEngine ADAudit Plus <8000 - Authenticated SQL Injection
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36516
HIGH
Zohocorp ManageEngine ADAudit Plus <8000 - Authenticated SQL Injection
Aug 23, 2024
CVSS 8.3
EPSS 0.01
Products
manageengine_applications_manager 56
manageengine_opmanager 56
manageengine_admanager_plus 53
manageengine_adaudit_plus 52
manageengine_adselfservice_plus 51
manageengine_servicedesk_plus 50
manageengine_desktop_central 48
manageengine_supportcenter_plus 31
manageengine_exchange_reporter_plus 28
manageengine_netflow_analyzer 28
manageengine_assetexplorer 26
manageengine_servicedesk_plus_msp 26
manageengine_password_manager_pro 22
manageengine_eventlog_analyzer 19
manageengine_network_configuration_manager 14
manageengine_pam360 14
manageengine_remote_access_plus 14
manageengine_firewall_analyzer 12
manageengine_access_manager_plus 11
manageengine_it360 9
manageengine_log360 9
ManageEngine Exchange Reporter Plus 8
manageengine_endpoint_central 8
manageengine_oputils 8
manageengine_analytics_plus 7
manageengine_datasecurity_plus 6
manageengine_opmanager_msp 6
manageengine_opmanager_plus 6
manageengine_cloud_security_plus 5
manageengine_key_manager_plus 5
Quick Filters