Known vulnerabilities in Zoho ManageEngine Remote Access Plus
Vendor:
Zoho Corporation
Software:
Zoho ManageEngine Remote Access Plus
Software CPE:
cpe:2.3:a:zohocorp:zoho_manageengine_remote_access_plus:*:*:*:*:*:*:*:*
Website:
https://www.zohocorp.com/index.html
Total vulnerabilities:
2
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71210 - Improper input validation CVE-2022-47966 |
CWE-20 | High | 10.1.2228.11 | 17.01.2023 |
SB2023011717 SB2023011718 |
||
| #VU24936 - Insufficiently Protected Credentials CVE-2020-8422 |
CWE-522 | Low | 10.0.450 | 05.02.2020 |
SB2020020506 |