VYPR
High severity8.5NVD Advisory· Published Oct 21, 2025· Updated Jun 17, 2026

CVE-2025-10020

CVE-2025-10020

Description

Zohocorp ManageEngine ADManager Plus version before 8024 are vulnerable to authenticated command injection vulnerability in the Custom Script component.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

12
  • 0+ 10 more
    • (no CPE)range: 0
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:*:*:*:*:*:*:*:*range: <8.0
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8001:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8002:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8010:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8011:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8012:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8020:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8021:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8022:*:*:*:*:*:*
    • cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8023:*:*:*:*:*:*
  • Range: <8024

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.