VulnerabilityAnalyzed
CVE-2024-36036
Zoho ManageEngine ADAudit Plus versions 7260 and below allows unauthorized local agent machine users to access sensitive information and modifying the agent configuration.
MEDIUM 4.2EPSS 0.37%
Does this matter?
Lower severity and a low EPSS score (0.37%). Track it; it rarely justifies an emergency change on its own.
Description
Zoho ManageEngine ADAudit Plus versions 7260 and below allows unauthorized local agent machine users to access sensitive information and modifying the agent configuration.
- CVSS 3.1
- 4.2 MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N
- EPSS
- 0.37% probability · 31th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-862
- Affected
- zohocorp/manageengine adaudit plus
- Source
- 0fc0942c-577d-436f-ae8e-945763c79b02
References
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.