CVE 6.4 MEDIUM

NTLM Hash Exposure Vulnerability_CVE-2025-11670

6.4 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

Description

Zohocorp ManageEngine ADManager Plus versions before 8025 are vulnerable to NTLM Hash Exposure. 
This vulnerability is exploitable only by technicians who have the “Impersonate as Admin” option enabled.

Basic Information

ID CVE-2025-11670
Source Zohocorp
Published Dec 15, 2025 at 11:11

Affected Product

Vendor Zohocorp
Product ManageEngine ADManager Plus
Affected Versions Zohocorp ManageEngine ADManager Plus 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.