CVE-2022-26653
MEDIUMZoho ManageEngine Remote Access Plus <10.1.2137.15 - Info Disclosure
Title source: llmDescription
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain details (such as the username and GUID of an administrator).
Scores
CVSS v3
5.3
EPSS
0.0154
EPSS Percentile
81.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Details
CWE
CWE-425
Status
published
Products (1)
zohocorp/manageengine_remote_access_plus
< 10.1.2137.15
Published
Apr 16, 2022
Tracked Since
Feb 18, 2026