Zohocorp ManageEngine Password Manager Pro versions before 13235, PAM360 versions before 8561, and Access Manager Plus versions before 4405 are vulnerable to an authenticated SQL Injection vulnerability.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 02 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Authenticated SQL Injection in ManageEngine Password Manager Pro, PAM360, and Access Manager Plus |
Wed, 02 Sep 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Zohocorp ManageEngine Password Manager Pro versions before 13235, PAM360 versions before 8561, and Access Manager Plus versions before 4405 are vulnerable to an authenticated SQL Injection vulnerability. | |
| First Time appeared |
Zohocorp
Zohocorp manageengine Access Manager Plus Zohocorp manageengine Pam360 Zohocorp manageengine Password Manager Pro |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:zohocorp:manageengine_access_manager_plus:*:*:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_pam360:*:*:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_password_manager_pro:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Zohocorp
Zohocorp manageengine Access Manager Plus Zohocorp manageengine Pam360 Zohocorp manageengine Password Manager Pro |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Zohocorp
Published:
Updated: 2026-09-02T07:25:47.155Z
Reserved: 2026-07-06T09:03:39.931Z
Link: CVE-2026-14828
No data.
Status : Received
Published: 2026-09-02T08:16:42.833
Modified: 2026-09-02T08:16:42.833
Link: CVE-2026-14828
No data.
OpenCVE Enrichment
Updated: 2026-09-02T08:30:13Z
Weaknesses