CVE-2025-5342
30.10.2025, 15:15
Zohocorp ManageEngine Exchange Reporter Plus through 5721 are vulnerable to ReDOS vulnerability in the search module.Enginsight
| Vendor | Product | Version |
|---|---|---|
| zohocorp | manageengine_exchange_reporter_plus | 𝑥 < 5.7 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5700 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5701 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5702 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5703 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5704 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5705 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5706 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5707 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5708 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5709 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5710 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5711 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5712 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5713 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5714 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5715 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5717 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5718 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5719 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5720 |
| zohocorp | manageengine_exchange_reporter_plus | 5.7:5721 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-400 - Uncontrolled Resource ConsumptionThe software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.
- CWE-1333 - Inefficient Regular Expression ComplexityThe product uses a regular expression with an inefficient, possibly exponential worst-case computational complexity that consumes excessive CPU cycles.