Vulnerabilities in ZohoCorp
72 resultsVexday analysis
Zoho Corp apresenta um perfil de risco baixo com apenas 2 CVEs catalogadas, nenhuma sob exploração ativa conhecida. Ambas as vulnerabilidades foram publicadas recentemente (últimos 90 dias) e relacionadas a injeção de comando (CWE-78), porém sem classificação crítica, indicando severidade moderada que requer monitoramento mas não constitui ameaça imediata.
CVE-2026-12370HIGHRemote Code Execution VulnerabilityEPSS 1.5%CVE-2026-18912HIGHManageEngine DataSecurity Plus versions before 6310 are vulnerable to an authenticated SQL injection vulnerability, allowing an authenticateEPSS 1.5%CVE-2026-14828HIGHZohocorp ManageEngine Password Manager Pro versions before 13235, PAM360 versions before 8561, and Access Manager Plus versions before 4405 EPSS 1.4%CVE-2026-12263HIGHAuthentication BypassEPSS 1.4%CVE-2025-1724HIGHAccount TakeoverEPSS 1.3%CVE-2026-86708CRITICALSensitive data exposureEPSS 1.2%CVE-2026-3183HIGHMulti Factor Auth BypassEPSS 1.2%CVE-2026-76979HIGHXML Injection vulnerabilityEPSS 1.1%CVE-2025-9787MEDIUMStored XSSEPSS 1.1%CVE-2026-15358HIGHPath Traversal VulnerabilityEPSS 1.1%CVE-2026-75825HIGHAuthentication Bypass vulnerabilityEPSS 1.1%CVE-2026-18911HIGHManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authentication bypass, allowing unenrolled agents to send reqEPSS 1.1%CVE-2025-5342MEDIUMDenial of Service (DoS)EPSS 1.1%CVE-2026-4108HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-28756HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-3880HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-28703HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-28754HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-3879HIGHStored XSS VulnerabilityEPSS 1.0%CVE-2026-27655HIGHStored XSS VulnerabilityEPSS 1.0%