CVE-2023-31492

Zoho ManageEngine ADManager Plus version 7182 and prior disclosed the default passwords for the account restoration of unauthorized domains to the authenticated users.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 39%
VendorProductVersion
zohocorpmanageengine_admanager_plus
𝑥
< 7.1
zohocorpmanageengine_admanager_plus
7.1
zohocorpmanageengine_admanager_plus
7.1:7100
zohocorpmanageengine_admanager_plus
7.1:7101
zohocorpmanageengine_admanager_plus
7.1:7102
zohocorpmanageengine_admanager_plus
7.1:7110
zohocorpmanageengine_admanager_plus
7.1:7111
zohocorpmanageengine_admanager_plus
7.1:7112
zohocorpmanageengine_admanager_plus
7.1:7113
zohocorpmanageengine_admanager_plus
7.1:7114
zohocorpmanageengine_admanager_plus
7.1:7115
zohocorpmanageengine_admanager_plus
7.1:7116
zohocorpmanageengine_admanager_plus
7.1:7117
zohocorpmanageengine_admanager_plus
7.1:7118
zohocorpmanageengine_admanager_plus
7.1:7120
zohocorpmanageengine_admanager_plus
7.1:7121
zohocorpmanageengine_admanager_plus
7.1:7122
zohocorpmanageengine_admanager_plus
7.1:7123
zohocorpmanageengine_admanager_plus
7.1:7124
zohocorpmanageengine_admanager_plus
7.1:7125
zohocorpmanageengine_admanager_plus
7.1:7126
zohocorpmanageengine_admanager_plus
7.1:7130
zohocorpmanageengine_admanager_plus
7.1:7131
zohocorpmanageengine_admanager_plus
7.1:7140
zohocorpmanageengine_admanager_plus
7.1:7141
zohocorpmanageengine_admanager_plus
7.1:7150
zohocorpmanageengine_admanager_plus
7.1:7151
zohocorpmanageengine_admanager_plus
7.1:7160
zohocorpmanageengine_admanager_plus
7.1:7161
zohocorpmanageengine_admanager_plus
7.1:7162
zohocorpmanageengine_admanager_plus
7.1:7163
zohocorpmanageengine_admanager_plus
7.1:7170
zohocorpmanageengine_admanager_plus
7.1:7171
zohocorpmanageengine_admanager_plus
7.1:7180
zohocorpmanageengine_admanager_plus
7.1:7181
zohocorpmanageengine_admanager_plus
7.1:7182
𝑥
= Vulnerable software versions