Filtered by vendor Zohocorp Subscriptions
Filtered by product Manageengine Admanager Plus Subscriptions
Total 48 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-37923 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
CVE-2021-37741 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 8.8 High
ManageEngine ADManager Plus before 7111 has Pre-authentication RCE vulnerabilities.
CVE-2021-37925 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior has a Post-Auth OS command injection vulnerability.
CVE-2021-37928 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
CVE-2021-37921 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
CVE-2021-37919 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execution.
CVE-2021-37762 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file overwrite leading to remote code execution.
CVE-2021-37761 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus version 7110 and prior is vulnerable to unrestricted file upload, leading to remote code execution.
CVE-2021-37539 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus before 7111 is vulnerable to unrestricted file which leads to Remote code execution.
CVE-2021-37424 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
ManageEngine ADSelfService Plus before 6112 is vulnerable to domain user account takeover.
CVE-2021-37419 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 7.5 High
Zoho ManageEngine ADSelfService Plus before 6112 is vulnerable to SSRF.
CVE-2021-37420 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 6.5 Medium
Zoho ManageEngine ADSelfService Plus before 6112 is vulnerable to mail spoofing.
CVE-2021-36771 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 6.1 Medium
Zoho ManageEngine ADManager Plus before 7110 allows reflected XSS.
CVE-2021-36772 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 6.1 Medium
Zoho ManageEngine ADManager Plus before 7110 allows stored XSS.
CVE-2021-33911 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-04 9.8 Critical
Zoho ManageEngine ADManager Plus before 7110 allows remote code execution.
CVE-2021-20131 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-03 8.8 High
ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the Personalization interface.
CVE-2021-20130 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-03 8.8 High
ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uploads in the PasswordExpiry interface.
CVE-2022-42904 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-03 7.2 High
Zoho ManageEngine ADManager Plus through 7151 allows authenticated admin users to execute the commands in proxy settings.
CVE-2022-29457 1 Zohocorp 4 Manageengine Adaudit Plus, Manageengine Admanager Plus, Manageengine Adselfservice Plus and 1 more 2024-08-03 8.8 High
Zoho ManageEngine ADSelfService Plus before 6121, ADAuditPlus 7060, Exchange Reporter Plus 5701, and ADManagerPlus 7131 allow NTLM Hash disclosure during certain storage-path configuration steps.
CVE-2023-41904 1 Zohocorp 1 Manageengine Admanager Plus 2024-08-02 5.4 Medium
Zoho ManageEngine ADManager Plus before 7203 allows 2FA bypass (for AuthToken generation) in REST APIs.