← Back

CVE-2025-1723

nvd nist
Published: Mar 3, 2025Modified: Jun 17, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: 0fc0942c-577d-436f-ae8e-945763c79b02 (Secondary)

Description

Zohocorp ManageEngine ADSelfService Plus versions 6510 and below are vulnerable to account takeover due to the session mishandling. Valid account holders in the setup only have the potential to exploit this bug.

Affected (12)

1 product
Manageengine Adselfservice Plus
Configuration A
12 vulnerable

References (1)

Source: 0fc0942c-577d-436f-ae8e-945763c79b02
Vendor Advisory

Timeline

No history available yet.