Home
MEDIUM: 4.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:NDefault status
unaffected
Any version before 128582
affected
Default status
unaffected
Any version before 128582
affected
Default status
unaffected
Any version before 128582
affected
Description
Zohocorp ManageEngine OpManager, NetFlow Analyzer, and OpUtils versions prior to 128582 are affected by a stored cross-site scripting vulnerability in the Subnet Details.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting')
Product status
Any version before 128582
Any version before 128582
Any version before 128582
References
www.manageengine.com/itom/advisory/cve-2025-9226.html