CVE-2021-41288

Zoho ManageEngine OpManager version 125466 and below is vulnerable to SQL Injection in the getReportData API.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
VendorProductVersion
zohocorpmanageengine_opmanager
𝑥
≤ 12.4
zohocorpmanageengine_opmanager
12.5
zohocorpmanageengine_opmanager
12.5:build125000
zohocorpmanageengine_opmanager
12.5:build125002
zohocorpmanageengine_opmanager
12.5:build125100
zohocorpmanageengine_opmanager
12.5:build125101
zohocorpmanageengine_opmanager
12.5:build125102
zohocorpmanageengine_opmanager
12.5:build125108
zohocorpmanageengine_opmanager
12.5:build125110
zohocorpmanageengine_opmanager
12.5:build125111
zohocorpmanageengine_opmanager
12.5:build125112
zohocorpmanageengine_opmanager
12.5:build125113
zohocorpmanageengine_opmanager
12.5:build125114
zohocorpmanageengine_opmanager
12.5:build125116
zohocorpmanageengine_opmanager
12.5:build125117
zohocorpmanageengine_opmanager
12.5:build125118
zohocorpmanageengine_opmanager
12.5:build125120
zohocorpmanageengine_opmanager
12.5:build125121
zohocorpmanageengine_opmanager
12.5:build125123
zohocorpmanageengine_opmanager
12.5:build125124
zohocorpmanageengine_opmanager
12.5:build125125
zohocorpmanageengine_opmanager
12.5:build125136
zohocorpmanageengine_opmanager
12.5:build125137
zohocorpmanageengine_opmanager
12.5:build125139
zohocorpmanageengine_opmanager
12.5:build125140
zohocorpmanageengine_opmanager
12.5:build125143
zohocorpmanageengine_opmanager
12.5:build125144
zohocorpmanageengine_opmanager
12.5:build125145
zohocorpmanageengine_opmanager
12.5:build125156
zohocorpmanageengine_opmanager
12.5:build125157
zohocorpmanageengine_opmanager
12.5:build125158
zohocorpmanageengine_opmanager
12.5:build125159
zohocorpmanageengine_opmanager
12.5:build125161
zohocorpmanageengine_opmanager
12.5:build125163
zohocorpmanageengine_opmanager
12.5:build125174
zohocorpmanageengine_opmanager
12.5:build125175
zohocorpmanageengine_opmanager
12.5:build125176
zohocorpmanageengine_opmanager
12.5:build125177
zohocorpmanageengine_opmanager
12.5:build125178
zohocorpmanageengine_opmanager
12.5:build125180
zohocorpmanageengine_opmanager
12.5:build125181
zohocorpmanageengine_opmanager
12.5:build125192
zohocorpmanageengine_opmanager
12.5:build125193
zohocorpmanageengine_opmanager
12.5:build125194
zohocorpmanageengine_opmanager
12.5:build125195
zohocorpmanageengine_opmanager
12.5:build125196
zohocorpmanageengine_opmanager
12.5:build125197
zohocorpmanageengine_opmanager
12.5:build125198
zohocorpmanageengine_opmanager
12.5:build125201
zohocorpmanageengine_opmanager
12.5:build125204
zohocorpmanageengine_opmanager
12.5:build125212
zohocorpmanageengine_opmanager
12.5:build125213
zohocorpmanageengine_opmanager
12.5:build125214
zohocorpmanageengine_opmanager
12.5:build125215
zohocorpmanageengine_opmanager
12.5:build125216
zohocorpmanageengine_opmanager
12.5:build125228
zohocorpmanageengine_opmanager
12.5:build125229
zohocorpmanageengine_opmanager
12.5:build125230
zohocorpmanageengine_opmanager
12.5:build125231
zohocorpmanageengine_opmanager
12.5:build125232
zohocorpmanageengine_opmanager
12.5:build125233
zohocorpmanageengine_opmanager
12.5:build125312
zohocorpmanageengine_opmanager
12.5:build125323
zohocorpmanageengine_opmanager
12.5:build125324
zohocorpmanageengine_opmanager
12.5:build125326
zohocorpmanageengine_opmanager
12.5:build125328
zohocorpmanageengine_opmanager
12.5:build125329
zohocorpmanageengine_opmanager
12.5:build125340
zohocorpmanageengine_opmanager
12.5:build125341
zohocorpmanageengine_opmanager
12.5:build125342
zohocorpmanageengine_opmanager
12.5:build125343
zohocorpmanageengine_opmanager
12.5:build125344
zohocorpmanageengine_opmanager
12.5:build125346
zohocorpmanageengine_opmanager
12.5:build125358
zohocorpmanageengine_opmanager
12.5:build125359
zohocorpmanageengine_opmanager
12.5:build125360
zohocorpmanageengine_opmanager
12.5:build125361
zohocorpmanageengine_opmanager
12.5:build125362
zohocorpmanageengine_opmanager
12.5:build125364
zohocorpmanageengine_opmanager
12.5:build125366
zohocorpmanageengine_opmanager
12.5:build125367
zohocorpmanageengine_opmanager
12.5:build125375
zohocorpmanageengine_opmanager
12.5:build125376
zohocorpmanageengine_opmanager
12.5:build125377
zohocorpmanageengine_opmanager
12.5:build125378
zohocorpmanageengine_opmanager
12.5:build125379
zohocorpmanageengine_opmanager
12.5:build125380
zohocorpmanageengine_opmanager
12.5:build125381
zohocorpmanageengine_opmanager
12.5:build125382
zohocorpmanageengine_opmanager
12.5:build125386
zohocorpmanageengine_opmanager
12.5:build125392
zohocorpmanageengine_opmanager
12.5:build125393
zohocorpmanageengine_opmanager
12.5:build125394
zohocorpmanageengine_opmanager
12.5:build125397
zohocorpmanageengine_opmanager
12.5:build125398
zohocorpmanageengine_opmanager
12.5:build125399
zohocorpmanageengine_opmanager
12.5:build125405
zohocorpmanageengine_opmanager
12.5:build125410
zohocorpmanageengine_opmanager
12.5:build125411
zohocorpmanageengine_opmanager
12.5:build125413
zohocorpmanageengine_opmanager
12.5:build125414
zohocorpmanageengine_opmanager
12.5:build125415
zohocorpmanageengine_opmanager
12.5:build125416
zohocorpmanageengine_opmanager
12.5:build125417
zohocorpmanageengine_opmanager
12.5:build125420
zohocorpmanageengine_opmanager
12.5:build125428
zohocorpmanageengine_opmanager
12.5:build125430
zohocorpmanageengine_opmanager
12.5:build125431
zohocorpmanageengine_opmanager
12.5:build125432
zohocorpmanageengine_opmanager
12.5:build125433
zohocorpmanageengine_opmanager
12.5:build125434
zohocorpmanageengine_opmanager
12.5:build125437
zohocorpmanageengine_opmanager
12.5:build125446
zohocorpmanageengine_opmanager
12.5:build125448
zohocorpmanageengine_opmanager
12.5:build125450
zohocorpmanageengine_opmanager
12.5:build125451
zohocorpmanageengine_opmanager
12.5:build125452
zohocorpmanageengine_opmanager
12.5:build125453
zohocorpmanageengine_opmanager
12.5:build125455
zohocorpmanageengine_opmanager
12.5:build125466
𝑥
= Vulnerable software versions