CVE-2014-5377: ManageEngine Device Expert

Medium severity, CVSS 5.0. EPSS: 57.5% chance of exploitation in the next 30 days.

ReadUsersFromMasterServlet in ManageEngine DeviceExpert before 5.9 build 5981 allows remote attackers to obtain user account credentials via a direct request.

Affected products

Published 2014-09-04. Last modified 2026-06-17.