← Back to CVE search

CVE-2026-2740

Zohocorp ManageEngine

Description

Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and RecoveryManager Plus before 6313 are vulnerable to Authenticated Remote code execution in the agent machines due to the bug in the 3rd party dependency.

CVSS 8.4EPSS 1.702%Risk 0.97
View source
Published
2026-05-21 14:16:44
Affected versions
<6525, <6264, <6313
Type
Package
Last modified
2026-07-23 16:10:00
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:L