← Back

CVE-2025-11669

nvd nist
Published: Jan 13, 2026Modified: Jun 17, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: 0fc0942c-577d-436f-ae8e-945763c79b02 (Secondary)

Description

Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerable to an authorization issue in the initiate remote session functionality.

Affected (9)

3 products
Manageengine Pam360
Manageengine Access Manager Plus
Manageengine Password Manager Pro
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Before 8.2
Version 8.2 build8200
Version 8.2 build8201
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Before 4.4
Version 4.4 build4400
Configuration C
4 vulnerable
Vulnerable SoftwareAffected Versions
Zohocorp
Before 13.2
Version 13.2 build13200
Version 13.2 build13210
Version 13.2 build13220

References (1)

Source: 0fc0942c-577d-436f-ae8e-945763c79b02
PatchVendor Advisory

Timeline

No history available yet.