8.1
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Description
Zohocorp ManageEngine PAM360 versions before 8531 and ManageEngine Password Manager Pro versions from 8600 to 13230 are vulnerable to Authenticated SQL injection in the query report module.
Basic Information
ID
CVE-2026-5785
Source
Zohocorp
Published
Apr 16, 2026 at 13:46
Modified
Apr 16, 2026 at 14:25
Affected Product
Vendor
Zohocorp
Product
ManageEngine PAM360
Affected Versions
Zohocorp ManageEngine PAM360 0
Zohocorp ManageEngine Password Manager Pro 8600
Zohocorp ManageEngine Password Manager Pro 8600