CVE-2025-11250

EUVD-2026-2353
Zohocorp ManageEngine ADSelfService Plus versions before 6519 are vulnerable to Authentication Bypass due to improper filter configurations.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.1 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
ZohocorpCNA
9.1 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 25%
Affected Products (NVD)
VendorProductVersion
zohocorpmanageengine_adselfservice_plus
𝑥
< 6.5
zohocorpmanageengine_adselfservice_plus
6.5:6500
zohocorpmanageengine_adselfservice_plus
6.5:6501
zohocorpmanageengine_adselfservice_plus
6.5:6502
zohocorpmanageengine_adselfservice_plus
6.5:6503
zohocorpmanageengine_adselfservice_plus
6.5:6504
zohocorpmanageengine_adselfservice_plus
6.5:6505
zohocorpmanageengine_adselfservice_plus
6.5:6506
zohocorpmanageengine_adselfservice_plus
6.5:6507
zohocorpmanageengine_adselfservice_plus
6.5:6508
zohocorpmanageengine_adselfservice_plus
6.5:6509
zohocorpmanageengine_adselfservice_plus
6.5:6510
zohocorpmanageengine_adselfservice_plus
6.5:6511
zohocorpmanageengine_adselfservice_plus
6.5:6512
zohocorpmanageengine_adselfservice_plus
6.5:6513
zohocorpmanageengine_adselfservice_plus
6.5:6514
zohocorpmanageengine_adselfservice_plus
6.5:6515
zohocorpmanageengine_adselfservice_plus
6.5:6516
zohocorpmanageengine_adselfservice_plus
6.5:6517
zohocorpmanageengine_adselfservice_plus
6.5:6518
𝑥
= Vulnerable software versions