CVE-2018-19374: Zohocorp ManageEngine Admanager Plus

High severity, CVSS 7.0. EPSS: 1.1% chance of exploitation in the next 30 days.

Zoho ManageEngine ADManager Plus 6.6 Build 6657 allows local users to gain privileges (after a reboot) by placing a Trojan horse file into the permissive bin directory.

Affected products

  • Zohocorp ManageEngine Admanager Plus: version 6.6 only

Published 2019-04-30. Last modified 2026-06-17.