CVE-2020-11946: Zohocorp ManageEngine Opmanager
High severity, CVSS 7.5. EPSS: 51.8% chance of exploitation in the next 30 days.
Zoho ManageEngine OpManager before 125120 allows an unauthenticated user to retrieve an API key via a servlet call.
Affected products
- Zohocorp ManageEngine Opmanager: version 12.5 only
Published 2020-04-20. Last modified 2026-06-17.