Skip to main content

Vendor/product archive

zohocorp / manageengine_adaudit_plus CVEs

Beta · best-effort

52 CVEs tagged to zohocorp / manageengine_adaudit_plus8 Critical, 38 High, 5 Medium, 1 Low, 0 Unrated.

CVE-2025-41444

Published Jun 9, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the alerts module.

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-36528

Published Jun 9, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in Service Account Auditing reports.

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-27709

Published Jun 9, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the Service Account Auditing reports.

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-41403

Published May 22, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection while fetching service account audit data.

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3836

Published May 22, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the logon events aggregate report.

CVSS 8.3 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-3834

Published May 14, 2025

Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in the OU History report.

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-5586

Published Aug 23, 2024

Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in extranet lockouts report option.

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-36516

Published Aug 23, 2024

Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerabi…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-36515

Published Aug 23, 2024

Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerabi…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5487

Published Aug 12, 2024

Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in attack surface analyzer's export option.

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 52 CVEsPage 1 of 3