CVE-2025-11670
EUVD-2025-20335915.12.2025, 11:15
Zohocorp ManageEngine ADManager Plus versions before 8025 are vulnerable to NTLM Hash Exposure. This vulnerability is exploitable only by technicians who have the “Impersonate as Admin” option enabled.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_admanager_plus | 𝑥 < 8.0 |
| zohocorp | manageengine_admanager_plus | 8.0:8000 |
| zohocorp | manageengine_admanager_plus | 8.0:8001 |
| zohocorp | manageengine_admanager_plus | 8.0:8002 |
| zohocorp | manageengine_admanager_plus | 8.0:8010 |
| zohocorp | manageengine_admanager_plus | 8.0:8011 |
| zohocorp | manageengine_admanager_plus | 8.0:8012 |
| zohocorp | manageengine_admanager_plus | 8.0:8020 |
| zohocorp | manageengine_admanager_plus | 8.0:8021 |
| zohocorp | manageengine_admanager_plus | 8.0:8022 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration