Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-17451 | Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in Service Account Auditing reports. |
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Mon, 16 Jun 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zohocorp
Zohocorp manageengine Adaudit Plus |
|
| CPEs | cpe:2.3:a:zohocorp:manageengine_adaudit_plus:*:*:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_adaudit_plus:8.5:-:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_adaudit_plus:8.5:8500:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_adaudit_plus:8.5:8510:*:*:*:*:*:* |
|
| Vendors & Products |
Zohocorp
Zohocorp manageengine Adaudit Plus |
Mon, 09 Jun 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Jun 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Zohocorp ManageEngine ADAudit Plus versions 8510 and prior are vulnerable to authenticated SQL injection in Service Account Auditing reports. | |
| Title | SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zohocorp
Published:
Updated: 2025-06-09T13:05:48.597Z
Reserved: 2025-04-21T07:24:59.749Z
Link: CVE-2025-36528
Updated: 2025-06-09T13:05:46.193Z
Status : Analyzed
Published: 2025-06-09T11:15:21.773
Modified: 2025-06-16T15:14:39.797
Link: CVE-2025-36528
No data.
OpenCVE Enrichment
Updated: 2025-06-24T09:44:13Z
EUVD