Evidence dossier

CVE-2022-47966

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for…

Exploited in the wild (CISA KEV since Jan 23, 2023). NVD reports CVSS 3.1 9.8. EPSS estimates 99.8% exploit likelihood as of Aug 18, 2026.

84.599.5Priority evidence range
Evidence current through Aug 27, 2026, 6:09 PM UTC

As of Aug 27, 2026

Normalized restatement

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application responsible for certain security protections, and the ManageEngine applications did not provide those protections. This affects Access Manager Plus before 4308, Active Directory 360 before 4310, ADAudit Plus before 7081, ADManager Plus before 7162, ADSelfService Plus before 6211, Analytics Plus before 5150, Application Control Plus before 10.1.2220.18, Asset Explorer before 6983, Browser Security Plus before 11.1.2238.6, Device Control Plus before 10.1.2220.18, Endpoint Central before 10.1.2228.11, Endpoint Central MSP before 10.1.2228.11, Endpoint DLP before 10.1.2137.6, Key Manager Plus before 6401, OS Deployer before 1.1.2243.1, PAM 360 before 5713, Password Manager Pro before 12124, Patch Manager Plus before 10.1.2220.18, Remote Access Plus before 10.1.2228.11, Remote Monitoring and Management (RMM) before 10.1.41. ServiceDesk Plus before 14004, ServiceDesk Plus MSP before 13001, SupportCenter Plus before 11026, and Vulnerability Manager Plus before 10.1.2220.18. Exploitation is only possible if SAML SSO has ever been configured for a product (for some products, exploitation requires that SAML SSO is currently active).

State
PUBLISHED
Published
Jan 18, 2023
Updated
Jul 31, 2026
Evidence coverage
85%

Evidence chronology

What was known when

Download this view's receipt →
  1. Source dateFirst observed by CASCA
    CISA KEV

    Exploitation cataloged: Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability

    Inspect raw assertion
    Field
    observed_exploitation
    Value
    Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability
    Original evidence ↗
  2. Source dateSource date omittedFirst observed by CASCA
    CISA-ADP

    Record text: CISA ADP Vulnrichment

    Inspect raw assertion
    Field
    container
    Value
    CISA ADP Vulnrichment
    Original evidence ↗
  3. Source dateSource date omittedFirst observed by CASCA
    CVE Program

    Record text: CVE Program Container

    Inspect raw assertion
    Field
    container
    Value
    CVE Program Container
    Original evidence ↗
  4. Source dateSource date omittedFirst observed by CASCA
    mitre

    Record text: Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application responsible for certain security protections, and the ManageEngine applications did not provide those protections. This affects Access Manager Plus before 4308, Active Directory 360 before 4310, ADAudit Plus before 7081, ADManager Plus before 7162, ADSelfService Plus before 6211, Analytics Plus before 5150, Application Control Plus before 10.1.2220.18, Asset Explorer before 6983, Browser Security Plus before 11.1.2238.6, Device Control Plus before 10.1.2220.18, Endpoint Central before 10.1.2228.11, Endpoint Central MSP before 10.1.2228.11, Endpoint DLP before 10.1.2137.6, Key Manager Plus before 6401, OS Deployer before 1.1.2243.1, PAM 360 before 5713, Password Manager Pro before 12124, Patch Manager Plus before 10.1.2220.18, Remote Access Plus before 10.1.2228.11, Remote Monitoring and Management (RMM) before 10.1.41. ServiceDesk Plus before 14004, ServiceDesk Plus MSP before 13001, SupportCenter Plus before 11026, and Vulnerability Manager Plus before 10.1.2220.18. Exploitation is only possible if SAML SSO has ever been configured for a product (for some products, exploitation requires that SAML SSO is currently active).

    Inspect raw assertion
    Field
    container
    Value
    Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application responsible for certain security protections, and the ManageEngine applications did not provide those protections. This affects Access Manager Plus before 4308, Active Directory 360 before 4310, ADAudit Plus before 7081, ADManager Plus before 7162, ADSelfService Plus before 6211, Analytics Plus before 5150, Application Control Plus before 10.1.2220.18, Asset Explorer before 6983, Browser Security Plus before 11.1.2238.6, Device Control Plus before 10.1.2220.18, Endpoint Central before 10.1.2228.11, Endpoint Central MSP before 10.1.2228.11, Endpoint DLP before 10.1.2137.6, Key Manager Plus before 6401, OS Deployer before 1.1.2243.1, PAM 360 before 5713, Password Manager Pro before 12124, Patch Manager Plus before 10.1.2220.18, Remote Access Plus before 10.1.2228.11, Remote Monitoring and Management (RMM) before 10.1.41. ServiceDesk Plus before 14004, ServiceDesk Plus MSP before 13001, SupportCenter Plus before 11026, and Vulnerability Manager Plus before 10.1.2220.18. Exploitation is only possible if SAML SSO has ever been configured for a product (for some products, exploitation requires that SAML SSO is currently active).
    Original evidence ↗
  5. Source dateFirst observed by CASCA
    FIRST EPSS

    EPSS score: 99.75% probability · 99.95th percentile

    Inspect raw assertion
    Field
    model_probability
    Value
    Probability 0.997530000000; percentile 0.999540000000
    Original evidence ↗
ExploitationCatalog member

CISA KEV · catalog date Jan 23, 2023 · first observed Jul 19, 2026

Exploit likelihood99.75%

FIRST EPSS · score date Aug 18, 2026 · 100th percentile · first observed Aug 18, 2026

SeverityCVSS 9.8

NVD · CVSS 3.1 · first observed Aug 1, 2026 · same-version scores align in this snapshot

Evidence detail

Source limits and decisions

Why each evidence state has this value

Outside this view’s verified evidence

Reason detail begins outside this selected snapshot; the state remains source-bound.

Source comparison

Who said what

CISA KEVOriginal assertion
Exploitation cataloged

Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability

Inspect raw assertion
Field
observed_exploitation
Value
Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability
Source dateFirst observed by CASCAOriginal evidence ↗
CISA-ADPIndependent enrichment
Record text

CISA ADP Vulnrichment

Inspect raw assertion
Field
container
Value
CISA ADP Vulnrichment
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CVE ProgramDerivative copy
Record text

CVE Program Container

Inspect raw assertion
Field
container
Value
CVE Program Container
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
mitreOriginal assertion
Record text

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application responsible for certain security protections, and the ManageEngine applications did not provide those protections. This affects Access Manager Plus before 4308, Active Directory 360 before 4310, ADAudit Plus before 7081, ADManager Plus before 7162, ADSelfService Plus before 6211, Analytics Plus before 5150, Application Control Plus before 10.1.2220.18, Asset Explorer before 6983, Browser Security Plus before 11.1.2238.6, Device Control Plus before 10.1.2220.18, Endpoint Central before 10.1.2228.11, Endpoint Central MSP before 10.1.2228.11, Endpoint DLP before 10.1.2137.6, Key Manager Plus before 6401, OS Deployer before 1.1.2243.1, PAM 360 before 5713, Password Manager Pro before 12124, Patch Manager Plus before 10.1.2220.18, Remote Access Plus before 10.1.2228.11, Remote Monitoring and Management (RMM) before 10.1.41. ServiceDesk Plus before 14004, ServiceDesk Plus MSP before 13001, SupportCenter Plus before 11026, and Vulnerability Manager Plus before 10.1.2220.18. Exploitation is only possible if SAML SSO has ever been configured for a product (for some products, exploitation requires that SAML SSO is currently active).

Inspect raw assertion
Field
container
Value
Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application responsible for certain security protections, and the ManageEngine applications did not provide those protections. This affects Access Manager Plus before 4308, Active Directory 360 before 4310, ADAudit Plus before 7081, ADManager Plus before 7162, ADSelfService Plus before 6211, Analytics Plus before 5150, Application Control Plus before 10.1.2220.18, Asset Explorer before 6983, Browser Security Plus before 11.1.2238.6, Device Control Plus before 10.1.2220.18, Endpoint Central before 10.1.2228.11, Endpoint Central MSP before 10.1.2228.11, Endpoint DLP before 10.1.2137.6, Key Manager Plus before 6401, OS Deployer before 1.1.2243.1, PAM 360 before 5713, Password Manager Pro before 12124, Patch Manager Plus before 10.1.2220.18, Remote Access Plus before 10.1.2228.11, Remote Monitoring and Management (RMM) before 10.1.41. ServiceDesk Plus before 14004, ServiceDesk Plus MSP before 13001, SupportCenter Plus before 11026, and Vulnerability Manager Plus before 10.1.2220.18. Exploitation is only possible if SAML SSO has ever been configured for a product (for some products, exploitation requires that SAML SSO is currently active).
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
FIRST EPSSOriginal assertion
EPSS score

99.75% probability · 99.95th percentile

Inspect raw assertion
Field
model_probability
Value
Probability 0.997530000000; percentile 0.999540000000
Source dateFirst observed by CASCAOriginal evidence ↗

Applicability

Cited product scope

Trace impact →
156Underlying assertions
22Canonical products
156Target assertions
0Constraint assertions

Grouped from 14 configuration nodes in this exact snapshot. Visual grouping is navigational; asset exposure and root cause require cited evidence.

Identity source boundaries
  • Cpe dictionary1,775,266 records · observed through 2026-07-21T06:45:29.809Z27d65b0f-b718-4b4f-bb79-c47c68d09dfa
  • Cpe match643,502 records · observed through 2026-07-21T08:13:17.697Z955dae73-7302-438b-aee1-058d7cc5d48e

23 scope groups

mitre · source assertedn/an/aDirect source scope
Affected: n/a
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "n/a"}]
NVD CPE · APPLICATIONzohocorpmanageengine_access_manager_plusVulnerable target · 9 assertions
Any version (unconstrained) (< 4.3); Version 4.3Canonical identity product-2f72a696404704175087f30022d931753391bec861e7252512f1f6d56c5d8b68Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4301:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    52dde5d9-28de-446f-a402-7be3c33a4b35
  2. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4307:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    0e0f346c-0445-4d38-8583-3379962b540f
  3. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4303:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    59675cc4-8a5c-4668-908c-0886b4b310dc
  4. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4306:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e6fdf373-4711-4b72-a14e-ceb19301c40f
  5. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4305:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1b2cc071-5bb3-4a25-88f2-dbc56b94d895
  6. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4300:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d5dec045-6a7e-4041-88f8-5abc4ab51c29
  7. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4304:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    45084336-f1dc-4e5b-a45e-506a779985d9
  8. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 4.3
    Match ID
    5fdf15ff-2561-4139-ac5e-4812584b1b03
  9. cpe:2.3:a:zohocorp:manageengine_access_manager_plus:4.3:build4302:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f6e1e4d8-b7f0-4bdb-b5a2-55436bec85f1
NVD CPE · APPLICATIONzohocorpmanageengine_ad360Vulnerable target · 9 assertions
Any version (unconstrained) (< 4.3); Version 4.3Canonical identity product-68a13e381f60c5e58daa189dc6f7c2fee4896e90585eaa1c495da0b862634a7fLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4306:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    837bf464-6d18-4267-8913-d7937c91789b
  2. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4302:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f05f8e9d-1880-4b94-922e-ba61fa112945
  3. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4308:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    0243ca85-b856-4ed9-bcd0-5eab182862cd
  4. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4303:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f336b0c2-1f99-4bc7-828b-02e432cb0723
  5. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4309:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    fb216cd0-b3bd-434d-8fc6-bb60408c128a
  6. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4305:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    46a96b82-49e1-4392-bdcf-cc9753d67a4e
  7. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4300:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1179fc2e-0fcc-4744-85a7-1d68ae742fee
  8. cpe:2.3:a:zohocorp:manageengine_ad360:4.3:4304:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cbba787f-7f38-4ad3-90be-d307d75f1bca
  9. cpe:2.3:a:zohocorp:manageengine_ad360:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 4.3
    Match ID
    d2b1fa6a-43db-4ccc-ac05-77810ed7b80d
NVD CPE · APPLICATIONzohocorpmanageengine_adaudit_plusVulnerable target · 20 assertions
Any version (unconstrained) (< 7.0); Version 7.0Canonical identity product-c677a8e0983ecd093aeea637b4cb2f27957184fb206670af3738fe9b632cfa37Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7055:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 14
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    5b2f6ee4-f3dc-43ce-b7fd-c9522a35406a
  2. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7004:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    26a6f6d1-540c-43c5-96a7-0e36f3e0a4d7
  3. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7053:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 12
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    5d6acbf5-25c6-403a-bcfa-66a90a8b4e14
  4. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7062:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 16
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1d84377e-cb44-4c6a-a665-763a1cd1af34
  5. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7060:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 15
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    623151cb-4c6b-4068-b173-fe8e73d652f5
  6. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7000:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    16bade82-3652-4074-bdff-828b7213caf6
  7. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7050:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    212bf664-02de-457f-91a6-6f824ecc963b
  8. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7054:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 13
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cf50dcac-33e1-4fe2-bf3c-c6a17cc8e48a
  9. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7006:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ea5be36e-a73a-4d1c-8185-9692373f1444
  10. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7002:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    01e9cae9-4b45-4e7a-be78-6e7e9a3a04e8
  11. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7065:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 18
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4c568190-1c1b-44fa-b50a-c142a0b8224d
  12. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7051:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d102b74f-6762-4efe-baf7-a7d416867d9d
  13. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7003:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cfa4fc59-cc4f-4f21-9ae9-3f526c91411c
  14. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7007:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    10f48951-44a1-42c1-ae2a-b2cdffcafdbf
  15. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7063:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 17
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    603d1875-bd5e-4c6c-9d2c-3caa9d7b3ae0
  16. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7052:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    fedf5c01-41d8-45c0-8f0d-3a7fcb6dadee
  17. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7080:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 19
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f876b2e2-c2ff-47be-9f53-5f86606a08ca
  18. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7008:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f505c783-09de-4045-9db4-dd850b449a48
  19. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:7.0:7005:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    97ea9324-9377-46e1-a0ea-637128e65ded
  20. cpe:2.3:a:zohocorp:manageengine_adaudit_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 7.0
    Match ID
    ffa4ea7a-b1c1-4750-a11d-89054b77b320
NVD CPE · APPLICATIONzohocorpmanageengine_admanager_plusVulnerable target · 28 assertions
Any version (unconstrained) (< 7.1); Version 7.1Canonical identity product-1591cc2136771d0273fb3dda8f388f1708b4b73956e7baa54c492ef0533b7bb3Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7125:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 18
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    876cc4d6-9546-4d39-965a-ef5a4af4ad93
  2. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7102:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    a741cda8-d1a8-4f83-ae54-7d3d3c433825
  3. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7118:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 12
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    93c96678-34b7-4fce-9dbd-1a7b3e0943bb
  4. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7113:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    322e0562-4586-4df4-a935-c2447883495b
  5. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7151:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 25
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7e53b3cb-4351-4e24-b80c-d62cc483d4d7
  6. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7160:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 26
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    0068e901-62d2-4c4d-96f8-7823b0df7da8
  7. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7120:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 13
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9e9b9e88-919f-4cf7-99dc-72e50bdf65a9
  8. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7124:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 17
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    bb788440-904b-430e-bf5b-12ada816477e
  9. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7150:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 24
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    77a0c792-a8b7-48f8-9ad7-96b0cbad4ebf
  10. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7117:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dc5a6297-98e3-45c8-95fb-7f4e65d133bf
  11. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7121:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 14
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7848b31c-ab51-486b-8655-7d7a060baffc
  12. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7115:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b371e93e-7c85-42dd-aa7f-9b43d8d02963
  13. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7130:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 20
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    813e1389-a949-427c-92c6-3974702fea5d
  14. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7122:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 15
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1cfb5c4a-b717-4cc2-ae03-336c63d17b96
  15. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7100:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    736740cb-a328-4163-bac4-6c881a24c8b1
  16. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7126:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 19
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    85432fe8-946f-448d-a92a-ff549edc52f8
  17. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7101:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9b806083-7309-4215-af81-dcc4d90b7876
  18. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7114:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    eb9151d6-bd21-4268-9371-ff702c1ad84b
  19. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7112:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9347d3cf-b5d1-4ace-83e1-73748ef15120
  20. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7141:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 23
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9e6cd67a-7f5a-4f29-b563-7e4d72a1149f
  21. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7131:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 21
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    34a48841-ea09-4917-a6ff-df645b581426
  22. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7123:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 16
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    456d49d7-f04d-4003-b429-8d5504959d04
  23. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7110:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    09563d6f-690b-4c7a-ba25-52d009724a74
  24. cpe:2.3:a:zohocorp:manageengine_admanager_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 7.1
    Match ID
    b9d72627-17f9-427e-907b-56ea0a498131
  25. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7161:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 27
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cf70ba56-3478-4da5-b013-4d9b820d2219
  26. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7140:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 22
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1c042646-9d36-4712-9e5d-40e55fcf7c24
  27. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7111:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    30fac23b-831e-4904-ab3b-85a3c068ceb8
  28. cpe:2.3:a:zohocorp:manageengine_admanager_plus:7.1:7116:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    3 · node/0 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    094eefa4-bd16-4f79-8133-62f9e2c8c675
NVD CPE · APPLICATIONzohocorpmanageengine_adselfservice_plusVulnerable target · 12 assertions
Any version (unconstrained) (< 6.2); Version 6.2Canonical identity product-caa68f3e5246fc315747c4aed3fc503828e89ede10f917f9760d7325954a690cLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6209:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    c7abb8b4-1cbf-4437-a751-b51f2b061c7d
  2. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 6.2
    Match ID
    7bc9667b-3ece-4df8-9c45-95e53736cd68
  3. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6204:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    8ac2c862-7709-44bf-9d0c-1bd63b381001
  4. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6203:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    247ed04d-e067-4a18-8514-9cd635df4f09
  5. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6200:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    bafcd8bd-07e4-4ad3-b802-9a6d2254777a
  6. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6210:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e870d833-28a7-45e1-9a6b-26a33d66b507
  7. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6205:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1e936706-e1d6-496a-8395-96706af32f19
  8. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6206:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ca25e9bb-ddb9-438c-890a-61264c10bff0
  9. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6208:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1156f671-d6bd-4fa2-924f-1802f157a025
  10. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6202:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1518c214-71a7-4c97-ba40-95d98e0c78bb
  11. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6207:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d71ff123-f797-4e0d-8167-dd4563733879
  12. cpe:2.3:a:zohocorp:manageengine_adselfservice_plus:6.2:6201:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b1e4e7ed-317b-471d-b387-24bfe504fd48
NVD CPE · APPLICATIONzohocorpmanageengine_analytics_plusVulnerable target · 7 assertions
Any version (unconstrained) (< 5.1); Version 5.1Canonical identity product-e507ea47749e311f4f83eae2908bbca2e277d00cacd14add9434f3eab99c4a2dLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5100:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dbee7368-580d-422e-80de-079462579bd4
  2. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5130:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dd056927-1bc0-42a0-8e26-7fc0f4be58af
  3. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5140:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    99f6f9cc-5a94-4a74-8d36-be198424c955
  4. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5121:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7a4df40e-2941-4a38-9297-42502d7ee0c5
  5. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5120:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    839eb997-896a-4cd9-badf-1c2dc2b498f0
  6. cpe:2.3:a:zohocorp:manageengine_analytics_plus:5.1:5110:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    92c88b5f-3689-4314-b23e-d9051808c1d9
  7. cpe:2.3:a:zohocorp:manageengine_analytics_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 5.1
    Match ID
    2026de5e-edda-4134-a63e-1f01a9ed209f
NVD CPE · APPLICATIONzohocorpmanageengine_application_control_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2220.18)Canonical identity product-11a7aa8154cafd08ef5dfba8583bbdb22fd13180afff0dcbb6be1d1e17778ea1Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_application_control_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 10.1.2220.18
    Match ID
    470acb71-9439-4cc9-b88b-b9ab5455ea9b
NVD CPE · APPLICATIONzohocorpmanageengine_assetexplorerVulnerable target · 32 assertions
Any version (unconstrained) (< 6.9); Version 6.9Canonical identity product-5e46e15cf96eab1ba710f162f55bcffb1f515ef52bdbf3dad7e3052844921889Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6974:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 23
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    74ce0145-f165-4fb4-a819-01b30641196a
  2. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6905:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9b708143-01b3-45d0-a769-e1d8e99237b5
  3. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6952:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 13
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    0b3e2b0a-eb1e-45c3-bc2c-9e32268a0867
  4. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6980:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 29
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    c9aac638-1379-4f87-9ba3-07ce16cab98a
  5. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6981:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 30
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b3470b5b-b8bc-41b9-8ca5-5e7a0eb9934f
  6. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6904:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    5d9b89eb-c51f-4a70-a6df-1bd326308da5
  7. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6971:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 20
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    8b189696-d6bc-475b-90ca-af122224feaa
  8. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6909:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7faf3dfa-78fb-417c-808a-507f66889913
  9. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6907:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4e528b83-1539-4516-9acf-a05e853014df
  10. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6982:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 31
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    3a2d9355-b1d5-4b14-8900-42e7c8dc5e4e
  11. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6953:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 14
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e1bd2753-52b8-4eb0-8332-c67935fb8b47
  12. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6972:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 21
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    477c97ec-a497-4c7c-973b-2c057a9242ad
  13. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6975:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 24
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ca291c44-616b-45d9-9709-61cd33e8b135
  14. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6978:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 27
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    2b73fd0f-6b48-406e-ab29-606cc07c81c2
  15. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6970:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 19
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    148f6458-136d-4612-9619-f51aeec11aa6
  16. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6903:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b293513c-9ecb-4512-b1b8-a470c6115458
  17. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6977:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 26
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dcf1b243-da58-42cd-9df4-6d4a010796d8
  18. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6901:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    6e0caa5b-16a1-4637-b90a-bfaf7381ccd9
  19. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6956:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 17
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    2ab1df8f-3385-40c6-92c5-10724f8a6911
  20. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6955:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 16
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f13cb227-496c-4777-be76-27aff5ed15c2
  21. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6973:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 22
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    284f5d9d-f23f-4936-b461-10701cc3ab7c
  22. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6976:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 25
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    c1c7492e-5d5b-419d-9749-7cc6ee5bc0fe
  23. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6979:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 28
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ced2c49d-db96-4495-bd6f-460871d94eda
  24. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6954:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 15
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e8bd08bf-4e5d-4de4-a499-b0296c126599
  25. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6902:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    48a960d7-7ab2-43f4-99fc-5b1fe69bfdb6
  26. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6951:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 12
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    691df8ec-6a7a-4449-8a4c-79f76726d685
  27. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6950:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e9506197-cdda-451b-9fe3-72b3c3ba19ef
  28. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6906:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f1837c80-7d1f-4af5-bf4b-932df03d6a30
  29. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6957:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 18
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    c1997de8-8cfa-4882-9107-741b88339a67
  30. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6908:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cbfb65bc-5b94-4075-bbb1-4cd8b5b216c3
  31. cpe:2.3:a:zohocorp:manageengine_assetexplorer:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 6.9
    Match ID
    a6deef51-0977-4061-9919-803dfd144e10
  32. cpe:2.3:a:zohocorp:manageengine_assetexplorer:6.9:6900:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7d0754d0-5b28-4851-89a2-dc5b20cff3e8
NVD CPE · APPLICATIONzohocorpmanageengine_browser_security_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 11.1.2238.6)Canonical identity product-f37b4c32f7156c0c487223815dcb561fa3996010320f5287b96cca7f5eecc2cfLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_browser_security_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 1
    Logic
    OR
    Version bounds
    through excluding 11.1.2238.6
    Match ID
    98faa4de-2c24-4ed4-9f2c-84cea3200e31
NVD CPE · APPLICATIONzohocorpmanageengine_device_control_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2220.18)Canonical identity product-e6a20125bbc2cbc2dac95cf8fa221f78208c866a6dfcc0b76262d1b4192fc0daLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_device_control_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 2
    Logic
    OR
    Version bounds
    through excluding 10.1.2220.18
    Match ID
    8239c2a0-ba6d-4b5c-b02f-617178685d52
NVD CPE · APPLICATIONzohocorpmanageengine_endpoint_dlp_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2137.6)Canonical identity product-0463146c8f5d1b66417e28d25efc095f5288c31f6fe516181cfaddd88a02ac2fLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_endpoint_dlp_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 3
    Logic
    OR
    Version bounds
    through excluding 10.1.2137.6
    Match ID
    4ca4e3a8-cab3-461e-8a99-f7d115b17e71
NVD CPE · APPLICATIONzohocorpmanageengine_key_manager_plusVulnerable target · 2 assertions
Any version (unconstrained) (< 6.4); Version 6.4Canonical identity product-abd5c2dd60f0f4d76191c86dc77447f12f019b06a7cbe25ef23bd0581f33838fLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_key_manager_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    7 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 6.4
    Match ID
    bb1e5798-5079-4292-9c11-2f334f8ac825
  2. cpe:2.3:a:zohocorp:manageengine_key_manager_plus:6.4:6400:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    7 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    37d11e5c-c569-4d9f-bff8-315f6d458d68
NVD CPE · APPLICATIONzohocorpmanageengine_os_deployerVulnerable target · 1 assertions
Any version (unconstrained) (< 1.1.2243.1)Canonical identity product-f730319dad531d1f9d0eb900a07fbc974f904c7dc76df1145a8a7ac763620fa8Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_os_deployer:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 4
    Logic
    OR
    Version bounds
    through excluding 1.1.2243.1
    Match ID
    53ec71fa-e248-4da5-ba76-746631ac435e
NVD CPE · APPLICATIONzohocorpmanageengine_pam360Vulnerable target · 5 assertions
Any version (unconstrained) (< 5.7); Version 5.7Canonical identity product-17db0326b72997ef308e7c95ce310b97c1d479eedb82ef1ce7e478c1c8e23bbaLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_pam360:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    8 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 5.7
    Match ID
    1478bfc3-a0b2-415b-ba1c-aa09d9451c93
  2. cpe:2.3:a:zohocorp:manageengine_pam360:5.7:build5711:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    8 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b2ce86da-b688-4e9e-af16-1974858d18bf
  3. cpe:2.3:a:zohocorp:manageengine_pam360:5.7:build5700:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    8 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1e270fb5-c447-4c93-9947-2ce50850a46b
  4. cpe:2.3:a:zohocorp:manageengine_pam360:5.7:build5710:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    8 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    496afb26-1e11-4632-8c10-cd80f601fcfe
  5. cpe:2.3:a:zohocorp:manageengine_pam360:5.7:build5712:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    8 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4bfa2f57-4506-4b3d-86e8-be9bec1134b4
NVD CPE · APPLICATIONzohocorpmanageengine_password_manager_proVulnerable target · 8 assertions
Any version (unconstrained) (< 12.1); Version 12.1Canonical identity product-cfc5154871d92972849678b42cd6f8d2ffc345f0821ef70188da10e6d5b573bfLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12120:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    43c059e6-e1ca-4792-b383-93062cd82d66
  2. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12122:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    6c34175b-0978-4207-bfc0-f38fdff9b3d5
  3. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12100:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9be65b96-74ed-48f1-b86d-cb3387d989cb
  4. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12123:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    6cab911e-5ce6-47ba-9909-c42bdfee0f5e
  5. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12110:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e42928fb-e0e7-4951-b9b1-cef60560a945
  6. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12101:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b4127640-1f60-4687-a24a-22b05a125290
  7. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 12.1
    Match ID
    76c7dc97-8bf1-421f-9272-fd301d2d7a3f
  8. cpe:2.3:a:zohocorp:manageengine_password_manager_pro:12.1:build12121:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    9 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    8d21a9eb-51bc-4eea-baa4-8c2096a9ddd5
NVD CPE · APPLICATIONzohocorpmanageengine_patch_manager_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2220.18)Canonical identity product-aea92d4c9e5dd0dedd11c8f72ef01acc6a5545086403bde326b90d8910f46df8Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_patch_manager_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 5
    Logic
    OR
    Version bounds
    through excluding 10.1.2220.18
    Match ID
    5784980d-cebb-4982-bd1f-fd8f5f2a039c
NVD CPE · APPLICATIONzohocorpmanageengine_remote_access_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2228.11)Canonical identity product-ca775b0361fb5405f8c075aa1b86d184cc1b58da930383fdaee586bd297d0b10Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_remote_access_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 6
    Logic
    OR
    Version bounds
    through excluding 10.1.2228.11
    Match ID
    06a9f459-2c86-4646-b87c-a55381e0939f
NVD CPE · APPLICATIONzohocorpmanageengine_remote_monitoring_and_management_centralVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.41)Canonical identity product-9fae20455fab12f4c379cdcc61b91dafd6faca0cb25cccaaa2a417d8b09683c2Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_remote_monitoring_and_management_central:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 7
    Logic
    OR
    Version bounds
    through excluding 10.1.41
    Match ID
    5d851b9a-ee8f-4634-a26d-bcc44b5cf02a
NVD CPE · APPLICATIONzohocorpmanageengine_servicedesk_plusVulnerable target · 5 assertions
Any version (unconstrained) (< 14.0); Version 14.0Canonical identity product-1f3b056ace85c9471413d7fc185100e741f57159b3e51768604dfc038cbaae89Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:14.0:14002:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    10 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    2eeaff47-78c6-4f48-bd89-cd2b02d420dc
  2. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    10 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 14.0
    Match ID
    fb1a6b88-6ee0-41f2-9fb6-243dfb52f92a
  3. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:14.0:14000:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    10 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    23a6549a-a30e-4693-9bab-2685db8c40bc
  4. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:14.0:14001:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    10 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    71ced256-a0ef-4933-ae18-421e37d5db16
  5. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus:14.0:14003:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    10 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e3e8fec0-688a-4ba6-9b4a-c59ad7fdaf8f
NVD CPE · APPLICATIONzohocorpmanageengine_servicedesk_plus_mspVulnerable target · 2 assertions
Any version (unconstrained) (< 13.0); Version 13.0Canonical identity product-0702e4eac456299998a68bb42fa65b4c68604500f849d1e9e816e8ad90e436d0Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:13.0:13000:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    11 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    298e6401-a9a9-43b6-901f-327944e0af94
  2. cpe:2.3:a:zohocorp:manageengine_servicedesk_plus_msp:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    11 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 13.0
    Match ID
    969e1fcf-76a0-40bc-a38f-56fcb713419f
NVD CPE · APPLICATIONzohocorpmanageengine_supportcenter_plusVulnerable target · 8 assertions
Version 11.0Canonical identity product-e9d0464b92638f15dab2b69b3952986565864b20a9f740a73e498e8e7f4da38bLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11024:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    33d51403-a976-4ea3-aa23-c699e03239e2
  2. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11020:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    80b62ba0-2cf1-4828-99a9-7dd13cfcb9be
  3. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11019:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9b83e37c-b1f6-4ceb-8a8e-39e24be8b59c
  4. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11025:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d86a2e8a-1689-4e6e-b50b-e16cbceb0c23
  5. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11022:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    4ea25296-8163-4c98-a8cd-35834240308e
  6. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11017:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    35366f60-d6e2-4b29-b593-d24079ce6831
  7. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11018:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cb60e016-82dd-41ec-85f9-d4f37af1f8e3
  8. cpe:2.3:a:zohocorp:manageengine_supportcenter_plus:11.0:11021:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    12 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7f529db6-4d30-49f8-bfe2-c10c1a899917
NVD CPE · APPLICATIONzohocorpmanageengine_vulnerability_manager_plusVulnerable target · 1 assertions
Any version (unconstrained) (< 10.1.2220.18)Canonical identity product-7128a2e7e5470fe0889cc62f39ca0cf21954db03845cf3d436533b810c81fab2Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:zohocorp:manageengine_vulnerability_manager_plus:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    13 · node/0 · match 8
    Logic
    OR
    Version bounds
    through excluding 10.1.2220.18
    Match ID
    450e672f-fa36-4770-87b6-cc8da66d2222

Affected-product evidence

Accepted scope and product mapping

0 canonical links · 0 source-reported links

Applicability remains source-scoped; safety and exposure remain unassessed.

Assessments

CVSS by origin

9.8
NVDCVSS 3.1 · role Primary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8
CVE Program sourceCVSS 3.1 · role Secondary · priority eligiblevalid_matchCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8
CISA-ADPCVSS 3.1 · role unknown · display onlyDirect record assessment retained outside normalized eligibilityCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Evidence boundaries

  • KEV membership is authoritative for the catalog, not proof of exposure in any environment.
  • EPSS is a dated model probability and not an individual-environment prediction.
  • Affected or fixed status applies only to the exact cited product and version scope; remaining scope stays source-scoped.
  • NVD-carried upstream facts remain derivative; independent corroboration requires a separately authored source.
  • Only NVD metrics validated under the generation-bound calculator are Public Priority eligible; direct CVE record metrics remain display-only.
  • NVD CVSS source eligibility is closed: NVD-authored, exact record-source, or registered same-CVE container origin; unmapped sources remain display-only.
  • Affected-product evidence remains source-scoped; canonical linkage is required before applicability scoring.
  • Core replay supports the active and immediately prior generation; retrospective valid-at replay is deferred.
  • OSV aggregation and OSV-converted NVD material are not independent corroboration.
  • Red Hat facts are vendor assertions for the exact supplied products.
  • Nonmembership and not-yet-observed states are not proof of safety.