CVE-2019-19799: Zohocorp ManageEngine Applications Manager

Medium severity, CVSS 5.3. EPSS: 6.4% chance of exploitation in the next 30 days.

Zoho ManageEngine Applications Manager before 14600 allows a remote unauthenticated attacker to disclose license related information via WieldFeedServlet servlet.

Affected products

  • Zohocorp ManageEngine Applications Manager: before 14.5 (fixed in 14.5); version 14.5 only

Published 2020-03-13. Last modified 2026-06-17.