CVE-2024-36036: Zohocorp ManageEngine Adaudit Plus

Medium severity, CVSS 4.2. EPSS: 0.4% chance of exploitation in the next 30 days.

Zoho ManageEngine ADAudit Plus versions 7260 and below allows unauthorized local agent machine users to access sensitive information and modifying the agent configuration.

Affected products

  • Zohocorp ManageEngine Adaudit Plus: before 7.2 (fixed in 7.2); version 7.2 only

Published 2024-05-27. Last modified 2026-06-17.