Home
HIGH: 8.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:NDefault status
unaffected
Any version before 8531
affected
Default status
unaffected
8600 (13230)
affected
Description
Zohocorp ManageEngine PAM360 versions before 8531 and ManageEngine Password Manager Pro versions from 8600 to 13230 are vulnerable to Authenticated SQL injection in the query report module.
Problem types
CWE-89 Improper neutralization of special elements used in an SQL command ('SQL injection')
Product status
Any version before 8531
8600 (13230)
References
www.manageengine.com/...nagerpro/advisory/cve-2026-5785.html