Zohocorp

Manageengine Adaudit Plus

54 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.73%
  • Veröffentlicht 23.07.2026 17:22:26
  • Zuletzt bearbeitet 24.07.2026 05:16:50

Zohocorp ManageEngine ADAudit Plus versions before 8606 are affected by Unauthenticated Remote code execution due to the vulnerable agent API.

Medienbericht
  • EPSS 1.96%
  • Veröffentlicht 23.06.2026 09:16:28
  • Zuletzt bearbeitet 24.06.2026 17:16:56

In ManageEngine ADSelfService Plus, RecoveryManager Plus, M365 Manager Plus, and ADAudit Plus, the SSO tickets generated to authenticate that session could be predicted by an unauthenticated user, leading to account takeover.

  • EPSS 1.28%
  • Veröffentlicht 09.06.2025 11:15:21
  • Zuletzt bearbeitet 16.06.2025 15:14:39

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in Service Account Auditing reports.

  • EPSS 1.28%
  • Veröffentlicht 09.06.2025 11:14:58
  • Zuletzt bearbeitet 16.06.2025 15:14:06

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the alerts module.

  • EPSS 1.28%
  • Veröffentlicht 09.06.2025 11:04:38
  • Zuletzt bearbeitet 16.06.2025 15:14:52

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the Service Account Auditing reports.

Medienbericht
  • EPSS 1.33%
  • Veröffentlicht 23.05.2025 10:29:58
  • Zuletzt bearbeitet 16.06.2025 15:15:15

Zohocorp ManageEngine ADAudit Plus versions below 8511 are vulnerable to SQL injection in the OU History report.

Medienbericht
  • EPSS 30.96%
  • Veröffentlicht 23.05.2025 10:28:24
  • Zuletzt bearbeitet 16.06.2025 15:15:28

Zohocorp ManageEngine ADAudit Plus versions below 8511 are vulnerable to SQL injection while exporting reports.

  • EPSS 1.59%
  • Veröffentlicht 22.05.2025 10:39:59
  • Zuletzt bearbeitet 16.06.2025 15:15:41

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection while fetching service account audit data.

  • EPSS 5.36%
  • Veröffentlicht 22.05.2025 10:38:26
  • Zuletzt bearbeitet 16.06.2025 15:15:52

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the logon events aggregate report.

  • EPSS 1.62%
  • Veröffentlicht 14.05.2025 11:16:31
  • Zuletzt bearbeitet 16.06.2025 15:16:07

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the OU History report.