CVE-2026-3324

HIGH

ManageEngine Log360 13000-13013 - Authentication Bypass via Improper Filter Configuration

Title source: llm
STIX 2.1

Description

Zohocorp ManageEngine Log360 versions 13000 through 13013 are vulnerable to authentication bypass on certain actions due to improper filter configuration.

Scores

CVSS v3 8.2
EPSS 0.0132
EPSS Percentile 67.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-288
Status published
Products (1)
Zohocorp/ManageEngine Log360 13000 - 13013
Published Apr 16, 2026
Tracked Since Apr 16, 2026