Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Manageengine

56 known vulnerabilities

3
CRITICAL
4
HIGH
3
MEDIUM

Top Products

desktop central 2 applications manager 2 servicedesk 2 servicedesk plus 2 assetexplorer 2 supportcenter 2 it360 2 opmanager 1 admanager plus 1
10 CVEs
6.1
CVE-2020-19554

Cross Site Scripting (XSS) vulnerability exists in ManageEngine OPManager <=12.5.174 when the API key contains an XML-ba

9.8
CVE-2021-28960

Zoho ManageEngine Desktop Central before build 10.0.683 allows unauthenticated command injection due to improper handlin

6.1
CVE-2018-15608

Zoho ManageEngine ADManager Plus 6.5.7 allows HTML Injection on the "AD Delegation" "Help Desk Technicians" screen.

6.1
CVE-2016-9490

ManageEngine Applications Manager versions 12 and 13 before build 13200 suffer from a Reflected Cross-Site Scripting vul

9.8
CVE-2016-9488

ManageEngine Applications Manager versions 12 and 13 before build 13200 suffer from remote SQL injection vulnerabilities

7.5
CVE-2017-11512

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the path

7.5
CVE-2017-11511

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the path

9.8
CVE-2015-8249

The FileUploadServlet class in ManageEngine Desktop Central 9 before build 91093 allows remote attackers to upload and e

8.8
CVE-2014-5302

Directory traversal vulnerability in ServiceDesk Plus and Plus MSP v5 through v9.0 v9030; AssetExplorer v4 to v6.1; Supp

8.8
CVE-2014-5301

Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 t

Frequently Asked Questions

How many CVEs affect Manageengine?

Manageengine has 56 CVE records in our database, including 3 critical and 19 high severity vulnerabilities.

What are the most severe Manageengine vulnerabilities?

Manageengine has 3 critical severity (CVSS 9.0+) and 19 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Manageengine vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Manageengine products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Manageengine Vulnerabilities

CyberStrike scans your infrastructure for Manageengine vulnerabilities and provides real-time remediation guidance.

Get Started