Vulnerability index

Browse CVEs

501 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2025-3834 Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the OU History report. Manageengine Adaudit Plus 8.5+ Fix from $1,9502025-05-14 HIGH 8.1 CVE-2025-3833EPSS 45% Zohocorp ManageEngine ADSelfService Plus versions 6513 and prior are vulnerable to authenticated SQL injection in the MFA reports. Manageengine Adselfservice Plus 6.5+ Fix from $1,9502025-05-14 MEDIUM 5.4 CVE-2024-50053 Zohocorp ManageEngine ServiceDesk Plus versions below 14920 , ServiceDesk Plus MSP and SupportCentre Plus versions below 14910 are vulnerable to Stor… Manageengine Servicedesk Plus 14.9+ Fix from $1,6002025-03-21 HIGH 8.1 CVE-2025-1723 Zohocorp ManageEngine ADSelfService Plus versions 6510 and below are vulnerable to account takeover due to the session mishandling. Valid account hol… Manageengine Adselfservice Plus 6.5+ Fix from $1,9502025-03-03 MEDIUM 6.5 CVE-2024-41140 Zohocorp ManageEngine Applications Manager versions 174000 and prior are vulnerable to the incorrect authorization in the update user function. Manageengine Applications Manager 17.0 / 17.3+ Fix from $1,6002025-01-29 HIGH 8.1 CVE-2024-52323 Zohocorp ManageEngine Analytics Plus versions below 6100 are vulnerable to authenticated sensitive data exposure which allows the users to retrieve s… Manageengine Analytics Plus 6.1+ Fix from $1,9502024-11-27 HIGH 8.8 CVE-2024-49574 Zohocorp ManageEngine ADAudit Plus versions below 8123 are vulnerable to SQL Injection in the reports module. Manageengine Adaudit Plus 8.1+ Fix from $1,9502024-11-18 HIGH 8.1 CVE-2024-10839 Zohocorp ManageEngine SharePoint Manager Plus versions 4503 and prior are vulnerable to authenticated XML External Entity (XXE) in the Management opt… Manageengine Sharepoint Manager Plus Mitigation only Fix from $1,9502024-11-08 HIGH 8.8 CVE-2024-24409 Zohocorp ManageEngine ADManager Plus versions 7203 and prior are vulnerable to Privilege Escalation in the Modify Computers option. Manageengine Admanager Plus Mitigation only Fix from $1,9502024-11-08 HIGH 7.8 CVE-2024-10203 Zohocorp ManageEngine EndPoint Central versions 11.3.2416.21 and below, 11.3.2428.9 and below are vulnerable to Arbitrary File Deletion in the agent … Manageengine Endpoint Central after 11.3.2428.09 Fix from $1,9502024-11-07 HIGH 8.8 CVE-2024-9459 Zohocorp ManageEngine Exchange Reporter Plus versions 5718 and prior are vulnerable to authenticated SQL Injection in reports module. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,9502024-11-05 HIGH 8.8 CVE-2024-36485 Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in Technician reports option. Manageengine Adaudit Plus 8.1+ Fix from $1,9502024-11-04 HIGH 8.8 CVE-2024-48878 Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report. Manageengine Admanager Plus 7.2+ Fix from $1,9502024-11-04 HIGH 8.1 CVE-2024-5608 Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to SQL Injection in the technician reports feature. Manageengine Adaudit Plus 8.1+ Fix from $1,9502024-10-24 HIGH 8.3 CVE-2024-38868 Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability while isolating the devices.This issue affects Endpoint Cent… Manageengine Endpoint Central 11.3.2400.15 / 11.3.2406.08+ Fix from $1,9502024-08-30 HIGH 8.1 CVE-2024-6204 Zohocorp ManageEngine Exchange Reporter Plus versions before 5715 are vulnerable to SQL Injection in the reports module. Manageengine Exchange Reporter Plus 5.7+ Fix from $1,9502024-08-30 HIGH 8.8 CVE-2024-5546 Zohocorp ManageEngine Password Manager Pro versions before 12431 and ManageEngine PAM360 versions before 7001 are affected by authenticated SQL Injec… Manageengine Pam360 Mitigation only Fix from $1,9502024-08-28 MEDIUM 6.1 CVE-2024-41150 An Stored Cross-site Scripting vulnerability in request module affects Zohocorp ManageEngine ServiceDesk Plus, ServiceDesk Plus MSP and SupportCenter… Manageengine Servicedesk Plus after 14.7 Fix from $1,6002024-08-23 MEDIUM 5.4 CVE-2024-38869 Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability in remote office deploy configurations.This issue affects En… Manageengine Servicedesk Plus after 14.7 Fix from $1,6002024-08-23 HIGH 8.8 CVE-2024-5466EPSS 7% Zohocorp ManageEngine OpManager and Remote Monitoring and Management versions 128329 and below are vulnerable to the authenticated remote code execut… Manageengine Opmanager after 12.7 Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5467 Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in account lockout report. Manageengine Adaudit Plus after 8.0 Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5490 Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in aggregate reports option. Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5556 Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in reports module. Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5586EPSS 5% Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in extranet lockouts report option. Manageengine Adaudit Plus after 8.0 Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-36515 Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is di… Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-36516 Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is di… Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-36517EPSS 5% Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in alerts module. Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-36514 Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in file summary option. Manageengine Adaudit Plus 8.0+ Fix from $1,9502024-08-23 HIGH 8.8 CVE-2024-5487 Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in attack surface analyzer's export option. Manageengine Adaudit Plus 8.1+ Fix from $1,9502024-08-12 HIGH 8.8 CVE-2024-5527 Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in file auditing configuration. Manageengine Adaudit Plus 8.1+ Fix from $1,9502024-08-12