High severity8.5NVD Advisory· Published Oct 21, 2025· Updated Jun 17, 2026
CVE-2025-10020
CVE-2025-10020
Description
Zohocorp ManageEngine ADManager Plus version before 8024 are vulnerable to authenticated command injection vulnerability in the Custom Script component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
120+ 10 more
- (no CPE)range: 0
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:*:*:*:*:*:*:*:*range: <8.0
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8001:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8002:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8010:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8011:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8012:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8020:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8021:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8022:*:*:*:*:*:*
- cpe:2.3:a:zohocorp:manageengine_admanager_plus:8.0:8023:*:*:*:*:*:*
- Range: <8024
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.