3.2
/ 10
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N
Description
ZohoCorp ManageEngine Endpoint Central versions prior to 11.4.2528.05 are vulnerable to a sensitive information logging issue. An authenticated user with access to the logs could potentially obtain the sensitive agent token.
Basic Information
ID
CVE-2025-11248
Source
Zohocorp
Published
Oct 27, 2025 at 12:56
Modified
Oct 27, 2025 at 15:07
Affected Product
Vendor
Zohocorp
Product
ManageEngine Endpoint Central
Affected Versions
Zohocorp ManageEngine Endpoint Central 0