zohocorp

559 tracked vulnerabilities.

CVE-2024-36515 HIGH
Zohocorp ManageEngine ADAudit Plus <8000 - Authenticated SQL Injection
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36514 HIGH
Zohocorp ManageEngine ADAudit Plus <8000 - Authenticated SQL Injection
Aug 23, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5527 HIGH
ManageEngine ADAudit Plus < 8110 - Authenticated SQL Injection in File Auditing Configuration
Aug 12, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5487 HIGH
ManageEngine ADAudit Plus < 8110 - Authenticated SQL Injection in Attack Surface Analyzer Export Option
Aug 12, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36518 HIGH
Zohocorp ManageEngine ADAudit Plus <8110 - Authenticated SQL Injection
Aug 12, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36035 HIGH
Zohocorp ManageEngine ADAudit Plus <8003 - Authenticated SQL Injection
Aug 12, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-36034 HIGH
Zohocorp ManageEngine ADAudit Plus <8003 - Authenticated SQL Injection
Aug 12, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5678 MEDIUM
ManageEngine Applications Manager <= 170900 - Authenticated SQL Injection in Create Monitor Feature
Aug 01, 2024
CVSS 4.7
EPSS 0.02
CVE-2024-38872 HIGH
ManageEngine Exchange Reporter Plus <= 5717 - Authenticated SQL Injection in Monitoring Module
Jul 26, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-38871 HIGH
ManageEngine Exchange Reporter Plus <= 5717 - Authenticated SQL Injection in Reports Module
Jul 26, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-5471 HIGH
ManageEngine DDI Central < 4002 - Agent Takeover via Hard-coded Credentials
Jul 17, 2024
CVSS 8.8
EPSS 0.07
CVE-2024-27311 MEDIUM
Zohocorp ManageEngine DDI Central <4001 - Path Traversal
Jul 17, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-27313 MEDIUM
Zoho ManageEngine PAM360 - 6610 - XSS
May 29, 2024
CVSS 6.3
EPSS 0.01
CVE-2024-36037 MEDIUM
Zoho ManageEngine ADAudit Plus <7260 - Info Disclosure
May 27, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-36036 MEDIUM
Zoho ManageEngine ADAudit Plus <=7.260 - Info Disclosure
May 27, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-27310 MEDIUM
Zoho ManageEngine ASDSelfService Plus <6401 - DoS
May 27, 2024
CVSS 5.3
EPSS 0.06
CVE-2024-27314 LOW
Zoho ManageEngine - Stored XSS
May 27, 2024
CVSS 2.4
EPSS 0.03
CVE-2024-21791 MEDIUM
ManageEngine ADAudit Plus < 7271 - Authenticated SQL Injection in Lockout History Option
May 22, 2024
CVSS 4.7
EPSS 0.03
CVE-2024-27312 HIGH
Zohocorp ManageEngine PAM360 6600 - Privilege Escalation
May 20, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-21775 HIGH
ManageEngine Exchange Reporter Plus <= 5714 - Authenticated SQL Injection in Report Exporting Feature
Feb 16, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-0269 HIGH
ManageEngine ADAudit Plus <= 7270 - Authenticated SQL Injection in File-Summary DrillDown
Feb 02, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-0253 HIGH
ManageEngine ADAudit Plus <= 7270 - Authenticated SQL Injection in Home Graph-Data
Feb 02, 2024
CVSS 8.3
EPSS 0.01
CVE-2024-0252 HIGH
ManageEngine ADSelfService Plus <= 6401 - Authenticated Remote Code Execution in Load Balancer Component
Jan 11, 2024
CVSS 8.8
EPSS 0.29
CVE-2023-49335 HIGH
Zoho ManageEngine ADAudit Plus <7271 - SQL Injection
May 20, 2024
CVSS 8.3
EPSS 0.00
CVE-2023-49334 HIGH
Zoho ManageEngine ADAudit Plus <7271 - SQL Injection
May 20, 2024
CVSS 8.3
EPSS 0.01