9.6
CVE-2025-3835
- EPSS 0.08%
- Veröffentlicht 09.06.2025 10:29:18
- Zuletzt bearbeitet 29.09.2025 14:48:47
- Quelle 0fc0942c-577d-436f-ae8e-945763
- CVE-Watchlists
- Unerledigt
Zohocorp ManageEngine Exchange Reporter Plus versions 5721 and prior are vulnerable to Remote code execution in the Content Search module.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zohocorp ≫ Manageengine Exchange Reporter Plus Version < 5.7
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update-
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5700
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5701
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5702
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5703
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5704
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5705
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5706
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5707
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5708
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5709
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5710
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5711
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5712
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5713
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5714
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5715
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5717
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5718
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5719
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5720
Zohocorp ≫ Manageengine Exchange Reporter Plus Version5.7 Update5721
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.246 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 0fc0942c-577d-436f-ae8e-945763c79b02 | 9.6 | 2.8 | 6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
|
CWE-434 Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.