CNNVD-202601-2299 Information

CNNVD ID

CNNVD-202601-2299

CVE-2025-11669

  • CNNVD Published: 2026-01-13

Description (Chinese)

ZOHO Password Manager Pro(PMP)等都是美国卓豪(ZOHO)公司的产品。ZOHO Password Manager Pro是一款密码管理器。ZOHO ManageEngine Access Manager Plus是ZOHO ManageEngine PAM360是一款完整的 PAM 软件。 ZOHO多款产品存在安全漏洞,该漏洞源于启动远程会话功能存在授权问题。以下产品及版本受到影响:ManageEngine PAM360 8202之前版本、Password Manager Pro 13221之前版本和Access Manager Plus 4401之前版本。

Description (English)

ZOHO Password Manager Pro (PMP) and others are products of ZOHO. ZOHO Password Manager Pro is a password manager. ZOHO ManageEngine Access Manager Plus is a complete PAM software. There is a safety gap in ZOHO ’ s multiple products, which stems from the authorization problem to start a remote session function. The following products and versions were affected: ManageEngine PAS 360 8202, Password Manager Pro 13221 and Access Manager Plus 4401.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

卓豪

Published

2026-01-13

Last Modified

2026-02-24

References

https://www.manageengine.com/privileged-access-management/advisory/cve-2025-11669.html

Patch

https://www.manageengine.com/privileged-access-management/advisory/cve-2025-11669.html

Share on: