CVE-2023-31492: Zohocorp ManageEngine Admanager Plus
Medium severity, CVSS 6.5. EPSS: 7.9% chance of exploitation in the next 30 days.
Zoho ManageEngine ADManager Plus version 7182 and prior disclosed the default passwords for the account restoration of unauthorized domains to the authenticated users.
Affected products
- Zohocorp ManageEngine Admanager Plus: before 7.1 (fixed in 7.1); version 7.1 only
Published 2023-08-17. Last modified 2026-06-17.