VendorsZoho Corpmanageengine_key_manager_plus6.0
Vulnerabilities

Zoho Corp ManageEngine Key Manager Plus 6.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2022-24447
An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a user, with the level Operator, to access stored SSL certificates and associated key pairs during export.
Published 2022-03-02 · Modified
6.5EPSS 0.008
CVE-2021-28382
Zoho ManageEngine Key Manager Plus before 6001 allows Stored XSS on the user-management page while importing malicious user details from AD.
Published 2021-06-07 · Modified
5.4EPSS 0.012