CVE-2018-16364: Zohocorp ManageEngine Applications Manager

High severity, CVSS 8.1. EPSS: 17.9% chance of exploitation in the next 30 days.

A serialization vulnerability in Zoho ManageEngine Applications Manager before build 13740 allows for remote code execution on Windows via a payload on an SMB share.

Affected products

  • Zohocorp ManageEngine Applications Manager: version 13.7 only

Published 2018-09-26. Last modified 2026-06-17.