Skip to main content

Vendor/product archive

zohocorp / manageengine_admanager_plus CVEs

Beta · best-effort

53 CVEs tagged to zohocorp / manageengine_admanager_plus22 Critical, 15 High, 16 Medium, 0 Low, 0 Unrated.

CVE-2025-11670

Published Dec 15, 2025

Zohocorp ManageEngine ADManager Plus versions before 8025 are vulnerable to NTLM Hash Exposure.  This vulnerability is exploitable only by technicians who have the “Impersonate as…

CVSS 6.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-10020

Published Oct 21, 2025

Zohocorp ManageEngine ADManager Plus version before 8024 are vulnerable to authenticated command injection vulnerability in the Custom Script component.

CVSS 8.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-31492

Published Aug 17, 2023

Zoho ManageEngine ADManager Plus version 7182 and prior disclosed the default passwords for the account restoration of unauthorized domains to the authenticated users.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-38332

Published Aug 4, 2023

Zoho ManageEngine ADManager Plus through 7201 allow authenticated users to take over another user's account via sensitive information disclosure.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-20131

Published Oct 13, 2021

ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the Personalization interface.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-20130

Published Oct 13, 2021

ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the PasswordExpiry interface.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 53 CVEsPage 1 of 3