rootpwn

high · CVSS v3 7.1

CVE-2026-84789

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Con…

Description

ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outside their assigned scope.

Scores

Severity
high
CVSS v2
7.5
CVSS v3
7.1
CVSS v4
EPSS

← All CVEs