CNNVD-202506-3297 Information

CNNVD ID

CNNVD-202506-3297

CVE-2025-5966

  • CNNVD Published: 2025-06-26

Description (Chinese)

ZOHO ManageEngine Exchange Reporter Plus是美国卓豪(ZOHO)公司的一款基于 Web的 Exchange Server 报告软件。 ZOHO ManageEngine Exchange Reporter Plus 5722及之前版本存在安全漏洞,该漏洞源于存储型跨站脚本攻击。

Description (English)

ZOHO ManageEngine Exchange Reporter Plus is a Web-based Exchange Server reporting software for ZOHO. ZOHO ManageEngine Exchange Reporter Plus 5722 and earlier versions had a security loophole, which originated in a storage-type cross-site script attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

卓豪

Published

2025-06-26

Last Modified

2026-02-24

References

https://www.manageengine.com/products/exchange-reports/advisory/CVE-2025-5966.html

Patch

https://www.manageengine.com/products/exchange-reports/advisory/CVE-2025-5366.html

Share on: