Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
50139071.6%CRITICAL

Related CVEs

100+
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2026-27655Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Permissions Based on Mailboxes report.MEDIUM4.840.6%Apr 3, 2026
CVE-2026-4108Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Non-Owner Mailbox Permission report.MEDIUM4.841.2%Apr 3, 2026
CVE-2026-4107Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Folder Message Count and Size report.MEDIUM5.440.2%Apr 3, 2026
CVE-2026-3880Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Public Folder Client Permissions report.MEDIUM4.841.2%Apr 3, 2026
CVE-2026-3879Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Equipment Mailbox Details report.MEDIUM4.840.6%Apr 3, 2026
CVE-2026-28703Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Mails Exchanged Between Users report.MEDIUM4.841.2%Apr 3, 2026
CVE-2026-28756Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Permissions based on Distribution Groups report.MEDIUM4.841.2%Apr 3, 2026
CVE-2026-28754Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS in Distribution Lists report.MEDIUM4.841.2%Apr 3, 2026
CVE-2025-9435Zohocorp ManageEngine ADManager Plus versions below 7230 are vulnerable to Path Traversal in the User Management moduleMEDIUM5.540.3%Jan 13, 2026
CVE-2025-11669Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerable to an authorization issue in the initiate remote session functionality.HIGH8.149.4%Jan 13, 2026
CVE-2025-11250Zohocorp ManageEngine ADSelfService Plus versions before 6519 are vulnerable to Authentication Bypass due to improper filter configurations.CRITICAL9.169.5%Jan 13, 2026
CVE-2025-9787Zohocorp ManageEngine Applications Manager versions 177400 and below are vulnerable to Stored Cross-Site Scripting vulnerability in the NOC view.MEDIUM6.155.3%Dec 18, 2025
CVE-2025-11670Zohocorp ManageEngine ADManager Plus versions before 8025 are vulnerable to NTLM Hash Exposure.  This vulnerability is exploitable only by technicians who have the “Impersonate as Admin” option enabled.MEDIUM4.328.8%Dec 15, 2025
CVE-2025-7633Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Custom report.MEDIUM6.133.8%Nov 11, 2025
CVE-2025-7632Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Public Folders report.MEDIUM5.433.4%Nov 11, 2025
CVE-2025-7430Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Folder Message Count and Size report.MEDIUM5.433.4%Nov 11, 2025
CVE-2025-7429Zohocorp ManageEngine Exchange Reporter Plus versions 5723 and below are vulnerable to the Stored XSS Vulnerability in the Mails Deleted or Moved report.MEDIUM5.433.4%Nov 11, 2025
CVE-2025-5347Zohocorp ManageEngine Exchange Reporter Plus versions before 5723 are vulnerable to Stored Cross Site Scripting in the reports module.MEDIUM5.433.2%Oct 30, 2025
CVE-2025-5343Zohocorp ManageEngine Exchange Reporter Plus versions through 5721 are vulnerable to Stored Cross Site Scripting in the Instant Search option.MEDIUM5.433.2%Oct 30, 2025
CVE-2025-5342Zohocorp ManageEngine Exchange Reporter Plus through 5721 are vulnerable to ReDOS vulnerability in the search module.MEDIUM6.559.6%Oct 30, 2025