All 9 CVE vulnerabilities found in ManageEngine Applications Manager, with AI-generated Chinese analysis, references, and POCs.
Vendor: Zohocorp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-86678 | Broken Authentication vulnerability CWE-639 | 8.8 | High | 2026-09-23 |
| CVE-2026-86677 | Broken Authentication vulnerability CWE-89 | 8.8 | High | 2026-09-23 |
| CVE-2026-86679 | Broken Access Control vulnerability CWE-20 | 7.1 | High | 2026-09-23 |
| CVE-2026-86683 | Broken Authentication Vulnerability CWE-20 | 8.1 | High | 2026-09-23 |
| CVE-2026-86681 | Broken Access Control vulnerability CWE-306 | 7.6 | High | 2026-09-23 |
| CVE-2026-86708 | Sensitive data exposure CWE-321 | 10.0 | Critical | 2026-09-23 |
| CVE-2025-9787 | Stored XSS CWE-79 | 6.1 | Medium | 2025-12-18 |
| CVE-2025-9223 | Command Injection CWE-77 | 8.8 | High | 2025-11-11 |
| CVE-2025-6239 | Information disclosure CWE-200 | 6.5 | Medium | 2025-10-21 |
All 9 known CVE vulnerabilities affecting ManageEngine Applications Manager with full Chinese analysis, references, and POCs where available.