CVE-2022-26653

MEDIUM

Zoho ManageEngine Remote Access Plus <10.1.2137.15 - Info Disclosure

Title source: llm
STIX 2.1

Description

Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view domain details (such as the username and GUID of an administrator).

Scores

CVSS v3 5.3
EPSS 0.0154
EPSS Percentile 81.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-425
Status published
Products (1)
zohocorp/manageengine_remote_access_plus < 10.1.2137.15
Published Apr 16, 2022
Tracked Since Feb 18, 2026