Vulnerability index

Browse CVEs

501 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.2 CVE-2026-3324 Zohocorp ManageEngine Log360 versions 13000 through 13013 are vulnerable to authentication bypass on certain actions due to improper filter configura… Manageengine Log360 Mitigation only Fix from $1,9502026-04-16 MEDIUM 5.4 CVE-2026-4107 Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Folder Message Count and Size report. Manageengine Exchange Reporter Plus 5.8+ Fix from $1,6002026-04-03 HIGH 8.1 CVE-2025-11669 Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnera… Manageengine Pam360 4.4 / 8.2+ Fix from $1,9502026-01-13 MEDIUM 5.5 CVE-2025-9435 Zohocorp ManageEngine ADManager Plus versions below 7230 are vulnerable to Path Traversal in the User Management module Manageengine Admanager Plus 7.2+ Fix from $1,6002026-01-13 CRITICAL 9.1 CVE-2025-11250 Zohocorp ManageEngine ADSelfService Plus versions before 6519 are vulnerable to Authentication Bypass due to improper filter configurations. Manageengine Adselfservice Plus 6.5+ Fix from $2,3002026-01-13 MEDIUM 6.1 CVE-2025-9787 Zohocorp ManageEngine Applications Manager versions 177400 and below are vulnerable to Stored Cross-Site Scripting vulnerability in the NOC view. Manageengine Applications Manager 17.7+ Fix from $1,6002025-12-18 MEDIUM 6.1 CVE-2025-7633 Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Custom report. Manageengine Exchange Reporter Plus after 5.6 Fix from $1,6002025-11-11 MEDIUM 5.4 CVE-2025-7430 Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Folder Message Count and S… Manageengine Exchange Reporter Plus after 5.6 Fix from $1,6002025-11-11 MEDIUM 5.4 CVE-2025-7632 Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Public Folders report. Manageengine Exchange Reporter Plus after 5.6 Fix from $1,6002025-11-11 MEDIUM 5.4 CVE-2025-7429 Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Mails Deleted or Moved rep… Manageengine Exchange Reporter Plus after 5.6 Fix from $1,6002025-11-11 MEDIUM 6.5 CVE-2025-5342 Zohocorp ManageEngine Exchange Reporter Plus through 5721 are vulnerable to ReDOS vulnerability in the search module. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,6002025-10-30 MEDIUM 5.4 CVE-2025-5343 Zohocorp ManageEngine Exchange Reporter Plus versions through 5721 are vulnerable to Stored Cross Site Scripting in the Instant Search option. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,6002025-10-30 MEDIUM 5.4 CVE-2025-5347 Zohocorp ManageEngine Exchange Reporter Plus versions before 5723 are vulnerable to Stored Cross Site Scripting in the reports module. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,6002025-10-30 MEDIUM 6.5 CVE-2025-6239 Zohocorp ManageEngine Applications Manager versions 176800 and below are vulnerable to information disclosure in File/Directory monitor. Manageengine Applications Manager 17.6+ Fix from $1,6002025-10-21 HIGH 8.8 CVE-2025-10020 Zohocorp ManageEngine ADManager Plus version before 8024 are vulnerable to authenticated command injection vulnerability in the Custom Script compone… Manageengine Admanager Plus 8.0+ Fix from $1,9502025-10-21 HIGH 8.8 CVE-2025-9428EPSS 26% Zohocorp ManageEngine Analytics Plus versions 6171 and prior are vulnerable to authenticated SQL Injection via the key update api. Manageengine Analytics Plus 6.1+ Fix from $1,9502025-10-21 MEDIUM 5.3 CVE-2025-7473 Zohocorp ManageEngine EndPoint Central versions 11.4.2516.1 and prior are vulnerable to XML Injection. Manageengine Endpoint Central after 11.4.2516.01 Fix from $1,6002025-10-21 HIGH 7.8 CVE-2025-5494 ZohoCorp ManageEngine Endpoint Central was impacted by an improper privilege management issue in the agent setup. This issue affects Endpoint Centra… Manageengine Endpoint Central 11.4.2500.26 / 11.4.2508.14+ Fix from $1,9502025-09-25 MEDIUM 5.4 CVE-2025-27930 Zohocorp ManageEngine Applications Manager versions 176600 and prior are vulnerable to stored cross-site scripting in the File/Directory monitor. Manageengine Applications Manager 17.6+ Fix from $1,6002025-07-23 HIGH 8.1 CVE-2025-5966 Zohocorp ManageEngine Exchange reporter Plus version 5722 and below are vulnerable to Stored XSS in the Attachments by filename keyword report. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,9502025-06-26 HIGH 8.1 CVE-2025-5366 Zohocorp ManageEngine Exchange reporter Plus version 5722 and below are vulnerable to Stored XSS in the Folder-wise read mails with subject report. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,9502025-06-26 HIGH 8.3 CVE-2025-41444 Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the alerts module. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-06-09 CRITICAL 9.6 CVE-2025-3835 Zohocorp ManageEngine Exchange Reporter Plus versions 5721 and prior are vulnerable to Remote code execution in the Content Search module. Manageengine Exchange Reporter Plus 5.7+ Fix from $2,3002025-06-09 HIGH 8.3 CVE-2025-36528 Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in Service Account Auditing reports. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-06-09 HIGH 8.3 CVE-2025-27709 Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the Service Account Auditing reports. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-06-09 HIGH 8.3 CVE-2025-41407 Zohocorp ManageEngine ADAudit Plus versions below 8511 are vulnerable to SQL injection in the OU History report. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-05-23 HIGH 8.3 CVE-2025-36527EPSS 31% Zohocorp ManageEngine ADAudit Plus versions below 8511 are vulnerable to SQL injection while exporting reports. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-05-23 HIGH 8.3 CVE-2025-3836EPSS 5% Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the logon events aggregate report. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-05-22 HIGH 8.3 CVE-2025-41403 Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection while fetching service account audit data. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-05-22 MEDIUM 6.5 CVE-2025-3444 Zohocorp ManageEngine ServiceDesk Plus MSP and SupportCenter Plus versions below 14920 are vulnerable to authenticated Local File Inclusion (LFI) in … Manageengine Servicedesk Plus Msp after 14.8 Fix from $1,6002025-05-22