VendorsZoho Corpmanageengine_password_manager_pro8.4
Vulnerabilities

Zoho Corp ZohoCorp ManageEngine Password Manager Pro 8.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-40300
Zoho ManageEngine Password Manager Pro through 12120 before 12121, PAM360 through 5550 before 5600, and Access Manager Plus through 4304 before 4305 have multiple SQL injection vulnerabilities.
Published 2022-09-16 · Analyzed
9.8EPSS 0.991
CVE-2024-5546
SQL Injection
Published 2024-08-28 · Analyzed
8.8EPSS 0.030
CVE-2016-1159
In ZOHO Password Manager Pro (PMP) 8.3.0 (Build 8303) and 8.4.0 (Build 8400,8401,8402), underprivileged users can obtain sensitive information (entry password history) via a vulnerable hidden service.
Published 2020-03-09 · Modified
6.5EPSS 0.044