Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-24447

Disclosure Date: March 02, 2022 (last updated October 07, 2023)
An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a user, with the level Operator, to access stored SSL certificates and associated key pairs during export.
Attacker Value
Unknown

CVE-2021-28382

Disclosure Date: June 07, 2021 (last updated February 22, 2025)
Zoho ManageEngine Key Manager Plus before 6001 allows Stored XSS on the user-management page while importing malicious user details from AD.